{"id":"ALSA-2022:8340","summary":"Moderate: freetype security update","details":"FreeType is a free, high-quality, portable font engine that can open and manage font files. FreeType loads, hints, and renders individual glyphs efficiently.\n\nSecurity Fix(es):\n\n* FreeType: Buffer overflow in sfnt_init_face (CVE-2022-27404)\n* FreeType: Segmentation violation via FNT_Size_Request (CVE-2022-27405)\n* Freetype: Segmentation violation via FT_Request_Size (CVE-2022-27406)\n\nFor more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.\n\nAdditional Changes:\n\nFor detailed information on changes in this release, see the AlmaLinux Release Notes linked from the References section.","modified":"2026-01-30T01:18:45.013412Z","published":"2022-11-15T00:00:00Z","related":["CVE-2022-27404","CVE-2022-27405","CVE-2022-27406"],"references":[{"type":"ADVISORY","url":"https://access.redhat.com/errata/RHSA-2022:8340"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2022-27404"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2022-27405"},{"type":"REPORT","url":"https://access.redhat.com/security/cve/CVE-2022-27406"},{"type":"REPORT","url":"https://bugzilla.redhat.com/2077985"},{"type":"REPORT","url":"https://bugzilla.redhat.com/2077989"},{"type":"REPORT","url":"https://bugzilla.redhat.com/2077991"},{"type":"ADVISORY","url":"https://errata.almalinux.org/9/ALSA-2022-8340.html"}],"affected":[{"package":{"name":"freetype","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/freetype"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.10.4-9.el9"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2022:8340.json"}},{"package":{"name":"freetype-devel","ecosystem":"AlmaLinux:9","purl":"pkg:rpm/almalinux/freetype-devel"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"2.10.4-9.el9"}]}],"database_specific":{"source":"https://github.com/AlmaLinux/osv-database/blob/master/advisories/almalinux9/ALSA-2022:8340.json"}}],"schema_version":"1.7.3"}