Close Menu
Indo Guard OnlineIndo Guard Online
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
What's Hot

Official RVTools Website Hacked to deliver malicious Bumblebe software

May 19, 2025

Band

May 19, 2025

Firefox Patches 2 Zero-Day

May 19, 2025
Facebook X (Twitter) Instagram
Facebook X (Twitter) Instagram YouTube
Indo Guard OnlineIndo Guard Online
Subscribe
  • Home
  • Cyber Security
  • Risk Management
  • Travel
  • Security News
  • Tech
  • More
    • Data Privacy
    • Data Protection
    • Global Security
Indo Guard OnlineIndo Guard Online
Home » Meta-prevents the vulnerability of Freetype (CVE-2025-2736) with active risk of operation
Global Security

Meta-prevents the vulnerability of Freetype (CVE-2025-2736) with active risk of operation

AdminBy AdminMarch 13, 2025No Comments2 Mins Read
FreeType Vulnerability
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link


March 13, 2025Red LakshmananWith open source / vulnerability

Freetype vulnerability

Meta warned that safety vulnerability affects FreeType The open source font library may have been used in the wild.

The vulnerability has been assigned to CVE ID Cve-2025-27363And it carries the CVSS 8.1, which indicates high severity. Described as disadvantages of record outside, it can be used to achieve the remote code when parsing some font files.

“Write down what goes out of the restriction, exists in the FreeType 2.13.0 versions and below when trying to deal with the structures of sublips associated with the Trenetype GX and the models of the font files, the company – Note In advisory.

“The vulnerable code assigns the signed short value to the unsigned long, and then adds the static value, resulting in the wrapped and highlighted the bull.

Cybersecurity

The company did not share any specifics on how the shortcomings behind it and the scale of the attacks. However, he admitted that a mistake “may have been used in the wild.”

Reaching out the comments, the FreeType Werner Lermberg developer told The Hacker News that vulnerability was enabled for almost two years. “FreeType versions are more than 2.13.0 no longer affected,” Lemberg said.

In A A separate message Posted on the OSS-Security Safety Safety List, it turned out that several Linux distributions are working an outdated version of the library, making them sensitive. This is included in –

  • Almarux
  • Alpine linux
  • Amazon Linux 2
  • Debian Stable / Devuan
  • RHEL / CentOS Stream / Alma Linux / etc. 8 and 9
  • Gnu plaster
  • Mageia
  • Open basket
  • OpenSuse jump
  • Slackware, and
  • Ubuntu 22.04

In light of active operation, users are advised to update their instances to the latest Freeetype (2.13.3) for optimal protection.

Found this article interesting? Keep track of us further Youter  and LinkedIn To read more exclusive content we publish.





Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Admin
  • Website

Related Posts

Official RVTools Website Hacked to deliver malicious Bumblebe software

May 19, 2025

Band

May 19, 2025

Firefox Patches 2 Zero-Day

May 19, 2025

Why CTEM – This is a winning rate for CISO in 2025

May 19, 2025

New Httpbot Botnet Launches 200+ Precision Ddos Attacks to Game and Technology Sectors

May 16, 2025

10 best practices for effective data protection

May 16, 2025
Add A Comment
Leave A Reply Cancel Reply

Loading poll ...
Coming Soon
Do You Like Our Website
: {{ tsp_total }}

Subscribe to Updates

Get the latest security news from Indoguardonline.com

Latest Posts

Official RVTools Website Hacked to deliver malicious Bumblebe software

May 19, 2025

Band

May 19, 2025

Firefox Patches 2 Zero-Day

May 19, 2025

Why CTEM – This is a winning rate for CISO in 2025

May 19, 2025

New Httpbot Botnet Launches 200+ Precision Ddos Attacks to Game and Technology Sectors

May 16, 2025

10 best practices for effective data protection

May 16, 2025

Rat Remcos delivered via LNK files and mshta in attacks based on PowerShell

May 16, 2025

Researchers put up new flaws of the Intel processor that allows for memory leaks and attacks Spectre V2

May 16, 2025
About Us
About Us

Provide a constantly updating feed of the latest security news and developments specific to Indonesia.

Facebook X (Twitter) Pinterest YouTube WhatsApp
Our Picks

Official RVTools Website Hacked to deliver malicious Bumblebe software

May 19, 2025

Band

May 19, 2025

Firefox Patches 2 Zero-Day

May 19, 2025
Most Popular

In Indonesia, crippling immigration ransomware breach sparks privacy crisis

July 6, 2024

Why Indonesia’s Data Breach Crisis Calls for Better Security

July 6, 2024

Indonesia’s plan to integrate 27,000 govt apps in one platform welcomed but data security concerns linger

July 6, 2024
© 2025 indoguardonline.com
  • Home
  • About us
  • Contact us
  • Privacy Policy

Type above and press Enter to search. Press Esc to cancel.