{"api_version":"1","generated_at":"2026-07-23T10:40:39+00:00","cve":"CVE-2011-0226","urls":{"html":"https://cve.report/CVE-2011-0226","api":"https://cve.report/api/cve/CVE-2011-0226.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2011-0226","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2011-0226"},"summary":{"title":"CVE-2011-0226","description":"Integer signedness error in psaux/t1decode.c in FreeType before 2.4.6, as used in CoreGraphics in Apple iOS before 4.2.9 and 4.3.x before 4.3.4 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted Type 1 font in a PDF document, as exploited in the wild in July 2011.","state":"PUBLISHED","assigner":"apple","published_at":"2011-07-19 22:55:00","updated_at":"2026-04-29 01:13:23"},"problem_types":["CWE-189","n/a"],"metrics":[{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"9.3","severity":"","vector":"AV:N/AC:M/Au:N/C:C/I:C/A:C","data":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:C/I:C/A:C","baseScore":9.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"}}],"references":[{"url":"http://lists.opensuse.org/opensuse-security-announce/2011-07/msg00015.html","name":"http://lists.opensuse.org/opensuse-security-announce/2011-07/msg00015.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"[security-announce] openSUSE-SU-2011:0852-1: important: freetype: Fixed","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securityfocus.com/bid/48619","name":"http://www.securityfocus.com/bid/48619","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Malformed Request","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00015.html","name":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00015.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Re: [ft-devel] details on iPhone exploit caused by FreeType?","mime":"text/x-diff","httpstatus":"200","archivestatus":"200"},{"url":"http://www.redhat.com/support/errata/RHSA-2011-1085.html","name":"http://www.redhat.com/support/errata/RHSA-2011-1085.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Support","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://support.apple.com/kb/HT4802","name":"http://support.apple.com/kb/HT4802","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"About the security content of iOS 4.3.4 Software Update - Apple Support","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00014.html","name":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00014.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"[ft-devel] details on iPhone exploit caused by FreeType?","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2011:120","name":"http://www.mandriva.com/security/advisories?name=MDVSA-2011:120","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Support / Security / Advisories /  / MDVSA-2011:120 | Mandriva","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/45167","name":"http://secunia.com/advisories/45167","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"FreeType PostScript Type1 Font Parsing Vulnerability - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://secunia.com/advisories/45224","name":"http://secunia.com/advisories/45224","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"Apple iOS Three Vulnerabilities - Secunia.com","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.apple.com/archives/Security-announce/2011//Oct/msg00003.html","name":"http://lists.apple.com/archives/Security-announce/2011//Oct/msg00003.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"APPLE-SA-2011-10-12-3 OS X Lion v10.7.2 and Security Update 2011-006","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00020.html","name":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00020.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Re: [ft-devel] details on iPhone exploit caused by FreeType?","mime":"text/x-diff","httpstatus":"200","archivestatus":"200"},{"url":"http://support.apple.com/kb/HT5002","name":"http://support.apple.com/kb/HT5002","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"About the security content of OS X Lion v10.7.2 and Security Update 2011-006","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.apple.com/archives/security-announce/2011//Jul/msg00000.html","name":"http://lists.apple.com/archives/security-announce/2011//Jul/msg00000.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"APPLE-SA-2011-07-15-1 iOS 4.3.4 Software Update","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.appleinsider.com/articles/11/07/06/hackers_release_new_browser_based_ios_jailbreak_based_on_pdf_exploit.html","name":"http://www.appleinsider.com/articles/11/07/06/hackers_release_new_browser_based_ios_jailbreak_based_on_pdf_exploit.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"AppleInsider | Hackers release new browser-based iOS 'jailbreak' based on PDF exploit","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.debian.org/security/2011/dsa-2294","name":"http://www.debian.org/security/2011/dsa-2294","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Debian -- Security Information -- DSA-2294-1 freetype","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://support.apple.com/kb/HT4803","name":"http://support.apple.com/kb/HT4803","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"About the security content of iOS 4.2.9 Software Update for iPhone - Apple Support","mime":"text/html","httpstatus":"200","archivestatus":"404"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2011-07/msg00016.html","name":"http://lists.opensuse.org/opensuse-security-announce/2011-07/msg00016.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"[security-announce] SUSE-SU-2011:0853-1: important: Security update for","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00026.html","name":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00026.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Re: [ft-devel] details on iPhone exploit caused by FreeType?","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00028.html","name":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00028.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":[],"title":"Re: [ft-devel] details on iPhone exploit caused by FreeType?","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.apple.com/archives/security-announce/2011//Jul/msg00001.html","name":"http://lists.apple.com/archives/security-announce/2011//Jul/msg00001.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"APPLE-SA-2011-07-15-2 iOS 4.2.9 Software Update for iPhone","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2011-0226","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2011-0226","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"1.0.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"1.0.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"1.0.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"1.1.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"1.1.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"1.1.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"1.1.3","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"1.1.4","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"1.1.5","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"2.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"2.0.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"2.0.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"2.0.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"2.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"2.1.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"2.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"2.2.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"3.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"3.0.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"3.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"3.1.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"3.1.3","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"3.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"3.2.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"3.2.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"4.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"4.0.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"4.0.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"4.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"4.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"4.2.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"4.2.5","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"4.3.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"4.3.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"4.3.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"4.3.3","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"4.2.8","cpe1":"cpe","cpe2":"2.3","cpe3":"o","cpe4":"apple","cpe5":"iphone_os","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"2.2.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"2.2.10","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"2.3.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"2.3.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"2.3.10","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"2.3.11","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"2.3.12","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"2.3.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"2.3.3","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"2.3.4","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"2.3.5","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"2.3.6","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"2.3.7","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"2.3.8","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"2.3.9","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"2.4.0","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"2.4.1","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"2.4.2","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"2.4.3","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"2.4.4","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"},{"cve_year":"2011","cve_id":"226","vulnerable":"1","versionEndIncluding":"2.4.5","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"freetype","cpe5":"freetype","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-06T21:43:15.423Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"45224","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/45224"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://support.apple.com/kb/HT4803"},{"name":"APPLE-SA-2011-07-15-1","tags":["vendor-advisory","x_refsource_APPLE","x_transferred"],"url":"http://lists.apple.com/archives/security-announce/2011//Jul/msg00000.html"},{"name":"openSUSE-SU-2011:0852","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://lists.opensuse.org/opensuse-security-announce/2011-07/msg00015.html"},{"name":"48619","tags":["vdb-entry","x_refsource_BID","x_transferred"],"url":"http://www.securityfocus.com/bid/48619"},{"name":"[freetype-devel] 20110709 Re: details on iPhone exploit caused by FreeType?","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00020.html"},{"name":"APPLE-SA-2011-07-15-2","tags":["vendor-advisory","x_refsource_APPLE","x_transferred"],"url":"http://lists.apple.com/archives/security-announce/2011//Jul/msg00001.html"},{"name":"45167","tags":["third-party-advisory","x_refsource_SECUNIA","x_transferred"],"url":"http://secunia.com/advisories/45167"},{"name":"APPLE-SA-2011-10-12-3","tags":["vendor-advisory","x_refsource_APPLE","x_transferred"],"url":"http://lists.apple.com/archives/Security-announce/2011//Oct/msg00003.html"},{"name":"RHSA-2011:1085","tags":["vendor-advisory","x_refsource_REDHAT","x_transferred"],"url":"http://www.redhat.com/support/errata/RHSA-2011-1085.html"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://support.apple.com/kb/HT4802"},{"name":"[freetype-devel] 20110708 Re: details on iPhone exploit caused by FreeType?","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00015.html"},{"name":"SUSE-SU-2011:0853","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://lists.opensuse.org/opensuse-security-announce/2011-07/msg00016.html"},{"name":"[freetype-devel] 20110711 Re: details on iPhone exploit caused by FreeType?","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00028.html"},{"name":"DSA-2294","tags":["vendor-advisory","x_refsource_DEBIAN","x_transferred"],"url":"http://www.debian.org/security/2011/dsa-2294"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://support.apple.com/kb/HT5002"},{"name":"MDVSA-2011:120","tags":["vendor-advisory","x_refsource_MANDRIVA","x_transferred"],"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2011:120"},{"tags":["x_refsource_MISC","x_transferred"],"url":"http://www.appleinsider.com/articles/11/07/06/hackers_release_new_browser_based_ios_jailbreak_based_on_pdf_exploit.html"},{"name":"[freetype-devel] 20110708 details on iPhone exploit caused by FreeType?","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00014.html"},{"name":"[freetype-devel] 20110711 Re: details on iPhone exploit caused by FreeType?","tags":["mailing-list","x_refsource_MLIST","x_transferred"],"url":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00026.html"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2011-07-08T00:00:00.000Z","descriptions":[{"lang":"en","value":"Integer signedness error in psaux/t1decode.c in FreeType before 2.4.6, as used in CoreGraphics in Apple iOS before 4.2.9 and 4.3.x before 4.3.4 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted Type 1 font in a PDF document, as exploited in the wild in July 2011."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2011-08-23T09:00:00.000Z","orgId":"286789f9-fbc2-4510-9f9a-43facdede74c","shortName":"apple"},"references":[{"name":"45224","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/45224"},{"tags":["x_refsource_CONFIRM"],"url":"http://support.apple.com/kb/HT4803"},{"name":"APPLE-SA-2011-07-15-1","tags":["vendor-advisory","x_refsource_APPLE"],"url":"http://lists.apple.com/archives/security-announce/2011//Jul/msg00000.html"},{"name":"openSUSE-SU-2011:0852","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://lists.opensuse.org/opensuse-security-announce/2011-07/msg00015.html"},{"name":"48619","tags":["vdb-entry","x_refsource_BID"],"url":"http://www.securityfocus.com/bid/48619"},{"name":"[freetype-devel] 20110709 Re: details on iPhone exploit caused by FreeType?","tags":["mailing-list","x_refsource_MLIST"],"url":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00020.html"},{"name":"APPLE-SA-2011-07-15-2","tags":["vendor-advisory","x_refsource_APPLE"],"url":"http://lists.apple.com/archives/security-announce/2011//Jul/msg00001.html"},{"name":"45167","tags":["third-party-advisory","x_refsource_SECUNIA"],"url":"http://secunia.com/advisories/45167"},{"name":"APPLE-SA-2011-10-12-3","tags":["vendor-advisory","x_refsource_APPLE"],"url":"http://lists.apple.com/archives/Security-announce/2011//Oct/msg00003.html"},{"name":"RHSA-2011:1085","tags":["vendor-advisory","x_refsource_REDHAT"],"url":"http://www.redhat.com/support/errata/RHSA-2011-1085.html"},{"tags":["x_refsource_CONFIRM"],"url":"http://support.apple.com/kb/HT4802"},{"name":"[freetype-devel] 20110708 Re: details on iPhone exploit caused by FreeType?","tags":["mailing-list","x_refsource_MLIST"],"url":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00015.html"},{"name":"SUSE-SU-2011:0853","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://lists.opensuse.org/opensuse-security-announce/2011-07/msg00016.html"},{"name":"[freetype-devel] 20110711 Re: details on iPhone exploit caused by FreeType?","tags":["mailing-list","x_refsource_MLIST"],"url":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00028.html"},{"name":"DSA-2294","tags":["vendor-advisory","x_refsource_DEBIAN"],"url":"http://www.debian.org/security/2011/dsa-2294"},{"tags":["x_refsource_CONFIRM"],"url":"http://support.apple.com/kb/HT5002"},{"name":"MDVSA-2011:120","tags":["vendor-advisory","x_refsource_MANDRIVA"],"url":"http://www.mandriva.com/security/advisories?name=MDVSA-2011:120"},{"tags":["x_refsource_MISC"],"url":"http://www.appleinsider.com/articles/11/07/06/hackers_release_new_browser_based_ios_jailbreak_based_on_pdf_exploit.html"},{"name":"[freetype-devel] 20110708 details on iPhone exploit caused by FreeType?","tags":["mailing-list","x_refsource_MLIST"],"url":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00014.html"},{"name":"[freetype-devel] 20110711 Re: details on iPhone exploit caused by FreeType?","tags":["mailing-list","x_refsource_MLIST"],"url":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00026.html"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"product-security@apple.com","ID":"CVE-2011-0226","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"Integer signedness error in psaux/t1decode.c in FreeType before 2.4.6, as used in CoreGraphics in Apple iOS before 4.2.9 and 4.3.x before 4.3.4 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted Type 1 font in a PDF document, as exploited in the wild in July 2011."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"45224","refsource":"SECUNIA","url":"http://secunia.com/advisories/45224"},{"name":"http://support.apple.com/kb/HT4803","refsource":"CONFIRM","url":"http://support.apple.com/kb/HT4803"},{"name":"APPLE-SA-2011-07-15-1","refsource":"APPLE","url":"http://lists.apple.com/archives/security-announce/2011//Jul/msg00000.html"},{"name":"openSUSE-SU-2011:0852","refsource":"SUSE","url":"http://lists.opensuse.org/opensuse-security-announce/2011-07/msg00015.html"},{"name":"48619","refsource":"BID","url":"http://www.securityfocus.com/bid/48619"},{"name":"[freetype-devel] 20110709 Re: details on iPhone exploit caused by FreeType?","refsource":"MLIST","url":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00020.html"},{"name":"APPLE-SA-2011-07-15-2","refsource":"APPLE","url":"http://lists.apple.com/archives/security-announce/2011//Jul/msg00001.html"},{"name":"45167","refsource":"SECUNIA","url":"http://secunia.com/advisories/45167"},{"name":"APPLE-SA-2011-10-12-3","refsource":"APPLE","url":"http://lists.apple.com/archives/Security-announce/2011//Oct/msg00003.html"},{"name":"RHSA-2011:1085","refsource":"REDHAT","url":"http://www.redhat.com/support/errata/RHSA-2011-1085.html"},{"name":"http://support.apple.com/kb/HT4802","refsource":"CONFIRM","url":"http://support.apple.com/kb/HT4802"},{"name":"[freetype-devel] 20110708 Re: details on iPhone exploit caused by FreeType?","refsource":"MLIST","url":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00015.html"},{"name":"SUSE-SU-2011:0853","refsource":"SUSE","url":"http://lists.opensuse.org/opensuse-security-announce/2011-07/msg00016.html"},{"name":"[freetype-devel] 20110711 Re: details on iPhone exploit caused by FreeType?","refsource":"MLIST","url":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00028.html"},{"name":"DSA-2294","refsource":"DEBIAN","url":"http://www.debian.org/security/2011/dsa-2294"},{"name":"http://support.apple.com/kb/HT5002","refsource":"CONFIRM","url":"http://support.apple.com/kb/HT5002"},{"name":"MDVSA-2011:120","refsource":"MANDRIVA","url":"http://www.mandriva.com/security/advisories?name=MDVSA-2011:120"},{"name":"http://www.appleinsider.com/articles/11/07/06/hackers_release_new_browser_based_ios_jailbreak_based_on_pdf_exploit.html","refsource":"MISC","url":"http://www.appleinsider.com/articles/11/07/06/hackers_release_new_browser_based_ios_jailbreak_based_on_pdf_exploit.html"},{"name":"[freetype-devel] 20110708 details on iPhone exploit caused by FreeType?","refsource":"MLIST","url":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00014.html"},{"name":"[freetype-devel] 20110711 Re: details on iPhone exploit caused by FreeType?","refsource":"MLIST","url":"http://lists.nongnu.org/archive/html/freetype-devel/2011-07/msg00026.html"}]}}}},"cveMetadata":{"assignerOrgId":"286789f9-fbc2-4510-9f9a-43facdede74c","assignerShortName":"apple","cveId":"CVE-2011-0226","datePublished":"2011-07-19T22:00:00.000Z","dateReserved":"2010-12-23T00:00:00.000Z","dateUpdated":"2024-08-06T21:43:15.423Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2011-07-19 22:55:00","lastModifiedDate":"2026-04-29 01:13:23","problem_types":["CWE-189","n/a"],"metrics":{"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:M/Au:N/C:C/I:C/A:C","baseScore":9.3,"accessVector":"NETWORK","accessComplexity":"MEDIUM","authentication":"NONE","confidentialityImpact":"COMPLETE","integrityImpact":"COMPLETE","availabilityImpact":"COMPLETE"},"baseSeverity":"HIGH","exploitabilityScore":8.6,"impactScore":10,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":true}]},"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:*:*:*:*:*:*:*:*","versionEndIncluding":"2.4.5","matchCriteriaId":"22668317-72EF-41B9-9379-1AEC251C5F49"},{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:2.2.1:*:*:*:*:*:*:*","matchCriteriaId":"F7252819-BA8A-4BD1-BAAA-179A8777C994"},{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:2.2.10:*:*:*:*:*:*:*","matchCriteriaId":"7B4450B4-B21F-4153-B9DD-C36A2381F00D"},{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:2.3.0:*:*:*:*:*:*:*","matchCriteriaId":"11575E3C-2BEA-4264-AE41-4A962BD17035"},{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:2.3.1:*:*:*:*:*:*:*","matchCriteriaId":"D333A965-EAD2-40DB-8FBE-C4C7DF44C35C"},{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:2.3.2:*:*:*:*:*:*:*","matchCriteriaId":"8CA37666-D2E6-47EF-BFFE-A9449D6A72CD"},{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:2.3.3:*:*:*:*:*:*:*","matchCriteriaId":"F2B49505-C973-4673-A9BC-34ACA25059D0"},{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:2.3.4:*:*:*:*:*:*:*","matchCriteriaId":"B8E8ECCA-58F2-4A05-8DF2-79C09A5FB275"},{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:2.3.5:*:*:*:*:*:*:*","matchCriteriaId":"8697D11D-BBDF-4722-85F7-5144A5D26E37"},{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:2.3.6:*:*:*:*:*:*:*","matchCriteriaId":"50E3EDA8-04D1-4DF1-80BB-72C6003E8F53"},{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:2.3.7:*:*:*:*:*:*:*","matchCriteriaId":"AB06CA25-BB25-43B8-9FC2-62C399CC52EE"},{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:2.3.8:*:*:*:*:*:*:*","matchCriteriaId":"6AF7414E-33A7-40E2-AEF0-1AE9D7D1B077"},{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:2.3.9:*:*:*:*:*:*:*","matchCriteriaId":"6FC0BD12-E065-4CC9-8AEE-E4C34A58EC3C"},{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:2.3.10:*:*:*:*:*:*:*","matchCriteriaId":"214DC64B-BA35-486B-AE30-F2D9381E4D26"},{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:2.3.11:*:*:*:*:*:*:*","matchCriteriaId":"B7CDE19A-473A-4BC5-AA7B-3D08FEEEE82C"},{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:2.3.12:*:*:*:*:*:*:*","matchCriteriaId":"DD8401A8-A328-49F6-BAE8-337F5F36C906"},{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:2.4.0:*:*:*:*:*:*:*","matchCriteriaId":"3FBF5BAA-8027-478F-BE06-3D3F4F823C7B"},{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:2.4.1:*:*:*:*:*:*:*","matchCriteriaId":"31358B5D-4087-4207-9730-297BA47DAA83"},{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:2.4.2:*:*:*:*:*:*:*","matchCriteriaId":"3A73E016-A4B0-416D-B9B6-786A787DAD3D"},{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:2.4.3:*:*:*:*:*:*:*","matchCriteriaId":"0588BCE1-059B-4602-B274-E9D268720B55"},{"vulnerable":true,"criteria":"cpe:2.3:a:freetype:freetype:2.4.4:*:*:*:*:*:*:*","matchCriteriaId":"D19BE9CC-6B1C-4AC8-9740-2ABDF40C4FEC"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:*:*:*:*:*:*:*:*","versionEndIncluding":"4.2.8","matchCriteriaId":"20E87ED9-A08D-48B2-83A8-AD2C0F6A22A9"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:1.0.0:*:*:*:*:*:*:*","matchCriteriaId":"A7B6D035-38A9-4C0B-9A9D-CAE3BF1CA56D"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:1.0.1:*:*:*:*:*:*:*","matchCriteriaId":"0C5B94E7-2C24-4913-B65E-8D8A0DE2B80B"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:1.0.2:*:*:*:*:*:*:*","matchCriteriaId":"E28FB0CB-D636-4F85-B5F7-70EC30053925"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:1.1.0:*:*:*:*:*:*:*","matchCriteriaId":"9EC16D1C-065A-4D1A-BA6E-528A71DF65CC"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:1.1.1:*:*:*:*:*:*:*","matchCriteriaId":"27319629-171F-42AA-A95F-2D71F78097D0"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:1.1.2:*:*:*:*:*:*:*","matchCriteriaId":"4F7AEFAB-7BB0-40D8-8BA5-71B374EB69DB"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:1.1.3:*:*:*:*:*:*:*","matchCriteriaId":"297F9438-0F04-4128-94A8-A504B600929E"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:1.1.4:*:*:*:*:*:*:*","matchCriteriaId":"F8618621-F871-4531-9F6C-7D60F2BF8B75"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:1.1.5:*:*:*:*:*:*:*","matchCriteriaId":"824DED2D-FA1D-46FC-8252-6E25546DAE29"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:2.0:*:*:*:*:*:*:*","matchCriteriaId":"1641DDFA-3BF1-467F-8EC3-98114FF9F07B"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:2.0.0:*:*:*:*:*:*:*","matchCriteriaId":"DF40CDA4-4716-4815-9ED0-093FE266734C"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:2.0.1:*:*:*:*:*:*:*","matchCriteriaId":"D61644E2-7AF5-48EF-B3D5-59C7B2AD1A58"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:2.0.2:*:*:*:*:*:*:*","matchCriteriaId":"3D06D54D-97FD-49FD-B251-CC86FBA68CA6"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:2.1:*:*:*:*:*:*:*","matchCriteriaId":"25A5D868-0016-44AB-80E6-E5DF91F15455"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:2.1.1:*:*:*:*:*:*:*","matchCriteriaId":"4C14EEA4-6E35-4EBE-9A43-8F6D69318BA0"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:2.2:*:*:*:*:*:*:*","matchCriteriaId":"B15E90AE-2E15-4BC2-B0B8-AFA2B1297B03"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:2.2.1:*:*:*:*:*:*:*","matchCriteriaId":"4E0C0A8D-3DDD-437A-BB3D-50FAEAF6C440"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:3.0:*:*:*:*:*:*:*","matchCriteriaId":"863383DA-0BC6-4A96-835A-A96128EC0202"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:3.0.1:*:*:*:*:*:*:*","matchCriteriaId":"2CFF5BE7-2BF6-48CE-B74B-B1A05383C10F"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:3.1:*:*:*:*:*:*:*","matchCriteriaId":"51D3BE2B-5A01-4AD4-A436-0056B50A535D"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:3.1.2:*:*:*:*:*:*:*","matchCriteriaId":"9A20F171-79FE-43B9-8309-B18341639FA1"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:3.1.3:*:*:*:*:*:*:*","matchCriteriaId":"126EF22D-29BC-4366-97BC-B261311E6251"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:3.2:*:*:*:*:*:*:*","matchCriteriaId":"3B3DD7B3-DA4C-4B0A-A94E-6BF66B358B7D"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:3.2.1:*:*:*:*:*:*:*","matchCriteriaId":"3A939B80-0AD0-48AF-81A7-370716F56639"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:3.2.2:*:*:*:*:*:*:*","matchCriteriaId":"D28528CE-4943-4F82-80C0-A629DA3E6702"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:4.0:*:*:*:*:*:*:*","matchCriteriaId":"12E22AF0-2B66-425A-A1EE-4F0E3B0433E7"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:4.0.1:*:*:*:*:*:*:*","matchCriteriaId":"BB34ECBE-33E8-40E1-936B-7800D2525AE6"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:4.0.2:*:*:*:*:*:*:*","matchCriteriaId":"107C59BE-D8CF-4A17-8DFB-BED2AB12388D"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:4.1:*:*:*:*:*:*:*","matchCriteriaId":"36C86BB9-0328-4E34-BC2B-47B3471EC262"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:4.2:*:*:*:*:*:*:*","matchCriteriaId":"1878949F-8E15-4751-8D8A-BFB2B9B9254A"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:4.2.1:*:*:*:*:*:*:*","matchCriteriaId":"A54A8681-2D8A-4B0B-A947-82F3CE1FB03C"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:4.2.5:*:*:*:*:*:*:*","matchCriteriaId":"E0070D83-2E27-4DA8-8D10-A6A697216F36"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:4.3.0:*:*:*:*:*:*:*","matchCriteriaId":"7252935C-E421-4339-B61F-0299E28888DA"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:4.3.1:*:*:*:*:*:*:*","matchCriteriaId":"9DD342BF-096A-4082-B700-19629F2BDE87"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:4.3.2:*:*:*:*:*:*:*","matchCriteriaId":"93141AB6-26F2-4C6D-95B3-D383EABB4034"},{"vulnerable":true,"criteria":"cpe:2.3:o:apple:iphone_os:4.3.3:*:*:*:*:*:*:*","matchCriteriaId":"4D5C61FF-7CD3-410A-94F2-5DE701466B1F"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2011","CveId":"226","Ordinal":"1","Title":"CVE-2011-0226","CVE":"CVE-2011-0226","Year":"2011"},"notes":[{"CveYear":"2011","CveId":"226","Ordinal":"1","NoteData":"Integer signedness error in psaux/t1decode.c in FreeType before 2.4.6, as used in CoreGraphics in Apple iOS before 4.2.9 and 4.3.x before 4.3.4 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted Type 1 font in a PDF document, as exploited in the wild in July 2011.","Type":"Description","Title":"CVE-2011-0226"},{"CveYear":"2011","CveId":"226","Ordinal":"2","NoteData":"2011-07-19","Type":"Other","Title":"Published"},{"CveYear":"2011","CveId":"226","Ordinal":"3","NoteData":"2011-08-23","Type":"Other","Title":"Modified"}]}}}