SUSE Package Hub
About
FAQ
Packages
Contribute
Use
Features
Update Info
openSUSE-2026-310
Recommended update for freetype2
Type:
recommended
Severity:
moderate
Issued:
2026-08-30
Description:
This update for freetype2 fixes the following issues: freetype2 is shipped as new package.
References
CVE:
CVE-2026-50811
CVE:
CVE-2026-23865
CVE:
CVE-2022-31782
CVE:
CVE-2022-27406
CVE:
CVE-2022-27405
CVE:
CVE-2022-27404
CVE:
CVE-2020-15999
CVE:
CVE-2018-6942
CVE:
CVE-2018-25032
CVE:
CVE-2017-8287
CVE:
CVE-2017-8105
CVE:
CVE-2014-9675
CVE:
CVE-2014-9674
CVE:
CVE-2014-9673
CVE:
CVE-2014-9672
CVE:
CVE-2014-9671
CVE:
CVE-2014-9670
CVE:
CVE-2014-9669
CVE:
CVE-2014-9668
CVE:
CVE-2014-9667
CVE:
CVE-2014-9666
CVE:
CVE-2014-9665
CVE:
CVE-2014-9664
CVE:
CVE-2014-9663
CVE:
CVE-2014-9662
CVE:
CVE-2014-9661
CVE:
CVE-2014-9660
CVE:
CVE-2014-9659
CVE:
CVE-2014-9658
CVE:
CVE-2014-9657
CVE:
CVE-2014-9656
CVE:
CVE-2014-2241
CVE:
CVE-2014-2240
CVE:
CVE-2012-5670
CVE:
CVE-2012-5669
CVE:
CVE-2012-5668
CVE:
CVE-2012-1144
CVE:
CVE-2012-1143
CVE:
CVE-2012-1142
CVE:
CVE-2012-1141
CVE:
CVE-2012-1140
CVE:
CVE-2012-1139
CVE:
CVE-2012-1138
CVE:
CVE-2012-1137
CVE:
CVE-2012-1136
CVE:
CVE-2012-1135
CVE:
CVE-2012-1134
CVE:
CVE-2012-1133
CVE:
CVE-2012-1132
CVE:
CVE-2012-1131
CVE:
CVE-2012-1130
CVE:
CVE-2012-1129
CVE:
CVE-2012-1128
CVE:
CVE-2012-1127
CVE:
CVE-2012-1126
CVE:
CVE-2011-3439
CVE:
CVE-2011-3256
CVE:
CVE-2011-0226
CVE:
CVE-2010-3855
CVE:
CVE-2010-3814
CVE:
CVE-2010-3311
CVE:
CVE-2010-3054
CVE:
CVE-2010-3053
CVE:
CVE-2010-2805
CVE:
CVE-2010-2497
CVE:
CVE-2009-0946
CVE:
CVE-2007-1351
Bugzilla:
933247 https://bugzilla.opensuse.org/show_bug.cgi?id=933247
Bugzilla:
916881 VUL-0: CVE-2014-9675: freetype2: bypass the ASLR protection mechanism via a crafted BDF font
Bugzilla:
916879 VUL-0: CVE-2014-9674: freetype2: integer overflow and heap-based buffer overflow in the Mac_Read_POST_Resource function in base/ftobjs.c
Bugzilla:
916874 VUL-0: CVE-2014-9673: freetype2: Integer signedness error in the Mac_Read_POST_Resource function in base/ftobjs.c
Bugzilla:
916873 VUL-0: CVE-2014-9672: freetype2: Array index error in the parse_fond function in base/ftmac.c
Bugzilla:
916872 VUL-0: CVE-2014-9671: freetype2: Off-by-one error in the pcf_get_properties function in pcf/pcfread.c
Bugzilla:
916871 VUL-0: CVE-2014-9670: freetype2: Multiple integer signedness errors in the pcf_get_encodings function inpcf/pcfread.c
Bugzilla:
916870 VUL-0: CVE-2014-9669: freetype2: Multiple integer overflows in sfnt/ttcmap.c
Bugzilla:
916868 VUL-0: CVE-2014-9668: freetype2: integer overflow and heap-based buffer overflow in the woff_open_font function in sfnt/sfobjs.c
Bugzilla:
916867 VUL-0: CVE-2014-9659: freetype2: stack-based buffer overflow in cff/cf2intrp.c in the CFF CharString interpreter
Bugzilla:
916865 VUL-0: CVE-2014-9663: freetype2: out-of-bounds read in the tt_cmap4_validate function in sfnt/ttcmap.c
Bugzilla:
916864 VUL-0: CVE-2014-9664: freetype2: out-of-bounds read via a crafted Type42 font
Bugzilla:
916863 VUL-0: CVE-2014-9665: freetype2: integer overflow and heap-based buffer overflow in the Load_SBit_Png function in sfnt/pngshim.c
Bugzilla:
916862 VUL-0: CVE-2014-9666: freetype2: integer overflow and out-of-bounds read in the tt_sbit_decoder_init function in sfnt/ttsbit.c
Bugzilla:
916861 VUL-0: CVE-2014-9667: freetype2: integer overflow and out-of-bounds read in sfnt/ttload.c
Bugzilla:
916860 VUL-0: CVE-2014-9662: freetype2: heap-based buffer overflow in cff/cf2ft.c
Bugzilla:
916859 VUL-0: CVE-2014-9661: freetype2: use-after-free in type42/t42parse.c
Bugzilla:
916858 VUL-0: CVE-2014-9660: freetype2: NULL pointer dereference in the _bdf_parse_glyphs function in bdf/bdflib.c
Bugzilla:
916857 VUL-0: CVE-2014-9658: freetype2: DoS in the tt_face_load_kern function in sfnt/ttkern.c
Bugzilla:
916856 VUL-0: CVE-2014-9657: freetype2: DoS in the tt_face_load_hdmx function in truetype/ttpload.c
Bugzilla:
916847 VUL-0: CVE-2014-9656: freetype2: integer overflow in the tt_sbit_decoder_load_image function in sfnt/ttsbit.c
Bugzilla:
867620 VUL-0: CVE-2014-2240 CVE-2014-2241: freetype2: problems in CFF rasterizer
Bugzilla:
704612 VUL-0: freetype: off-by-one / length checks missing in psaux/psobjs.c
Bugzilla:
647375 https://bugzilla.opensuse.org/show_bug.cgi?id=647375
Bugzilla:
641580 https://bugzilla.opensuse.org/show_bug.cgi?id=641580
Bugzilla:
629447 https://bugzilla.opensuse.org/show_bug.cgi?id=629447
Bugzilla:
628213 VUL-0: freetype2: FreeType vulnerability being exploited in the wild (CVE-2010-1797)
Bugzilla:
619562 https://bugzilla.opensuse.org/show_bug.cgi?id=619562
Bugzilla:
596559 Misc fonts not available in fontconfig
Bugzilla:
519192 Fixing build of wine on AMD 64 platform
Bugzilla:
485889 https://bugzilla.opensuse.org/show_bug.cgi?id=485889
Bugzilla:
478407 https://bugzilla.opensuse.org/show_bug.cgi?id=478407
Bugzilla:
441638 [freetype2] Bytecode interpreter patch is incomplete
Bugzilla:
437293 https://bugzilla.opensuse.org/show_bug.cgi?id=437293
Bugzilla:
399169 https://bugzilla.opensuse.org/show_bug.cgi?id=399169
Bugzilla:
1271045 VUL-0: CVE-2026-50811: freetype2: out-of-bounds read vulnerabilityin src/truetype/ttgxvar.c in the TT_Get_Var_Design implementation used by FT_Get_Var_Design_Coordinates
Bugzilla:
1259118 VUL-0: CVE-2026-23865: freetype2: Integer overflow in the tt_var_load_item_variation_store function
Bugzilla:
1252148 https://bugzilla.opensuse.org/show_bug.cgi?id=1252148
Bugzilla:
1200264 VUL-0: CVE-2022-31782: ft2demos: heap-based buffer overflow in ftbench.c
Bugzilla:
1198832 VUL-0: CVE-2022-27405: freetype2,freetype: FreeType: Segmentation Fault
Bugzilla:
1198830 VUL-0: CVE-2022-27404: freetype2,freetype: FreeType: Buffer Overflow
Bugzilla:
1198823 VUL-0: CVE-2022-27406: freetype,freetype2: Segmentation violation
Bugzilla:
1198536 freetype 2.12: inconsistent x-height rendered
Bugzilla:
1198497 libfreetype (?) causes crash for some applications
Bugzilla:
1177914 VUL-0: CVE-2020-15999: freetype2: A buffer overflow was discovered in Load_SBit_Png.
Bugzilla:
1091109 ft2demos supplements fonts-config
Bugzilla:
1084085 Freetype2 new TrueType interpreter in release >= 2.6.4 broke full hinting
Bugzilla:
1079603 VUL-1: freetype: Avoid NULL reference in src/truetype/ttinterp.c
Bugzilla:
1079601 VUL-1: freetype2: Protection against invalid VF data
Bugzilla:
1079600 VUL-1: freetype2: Integer overflow issues in src/truetype/ttinterp.c
Bugzilla:
1036457 VUL-0: CVE-2017-8287: freetype2: FreeType 2 before 2017-03-26 has an out-of-bounds write caused by aheap-based buffer overflow relat...
Bugzilla:
1035807 VUL-0: CVE-2017-8105: freetype2: FreeType 2 before 2017-03-24 has an out-of-bounds write caused by aheap-based buffer overflow relat...
Bugzilla:
1031678 ft2demos: split possible?
Packages
freetype2-2.14.3-bp157.2.1