Known vulnerabilities in fontforge (Red Hat package)
Vendor:
Red Hat Inc.
Software:
fontforge (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:fontforge_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
7
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (7)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU121111 - Improper Validation of Array Index CVE-2025-15270 |
CWE-129 | High | 20201107-7.el9_4, 20201107-8.el9_6, 20201107-8.el9_7, 20230101-15.el10_1 | 08.01.2026 |
SB2026010831 SB2026022810 SB2026031804 and 6 more |
||
| #VU121102 - Heap-based Buffer Overflow CVE-2025-15275 |
CWE-122 | High | 20120731b-14.el7_9, 20201107-6.el9_4, 20201107-7.el9_6, 20201107-7.el9_7, 20230101-14.el10_0 | 08.01.2026 |
SB2026010831 SB2026012758 SB2026020573 and 7 more |
||
| #VU121100 - Use After Free CVE-2025-15269 |
CWE-416 | High | 20120731b-14.el7_9, 20201107-6.el9_4, 20201107-7.el9_6, 20201107-7.el9_7, 20230101-14.el10_0 | 08.01.2026 |
SB2026010831 SB2026012758 SB2026020573 and 7 more |
||
| #VU121096 - Heap-based Buffer Overflow CVE-2025-15279 |
CWE-122 | High | 20120731b-14.el7_9, 20201107-6.el9_4, 20201107-7.el9_6, 20201107-7.el9_7, 20230101-14.el10_0 | 08.01.2026 |
SB2026010831 SB2026012758 SB2026020573 and 7 more |
||
| #VU100255 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2024-25081 |
CWE-78 | High | 20201107-6.el9, 20201107-6.el9_4 | 12.11.2024 |
SB2024111277 SB2024111280 SB2024111285 and 8 more |
||
| #VU100254 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') CVE-2024-25082 |
CWE-78 | High | 20201107-6.el9, 20201107-6.el9_4 | 12.11.2024 |
SB2024111277 SB2024111280 SB2024111285 and 8 more |
||
| #VU24486 - Use After Free CVE-2020-5395 |
CWE-416 | High | 20120731b-13.el7, 20170731-14.el8 | 22.01.2020 |
SB2020012218 SB2020012219 SB2020042828 and 4 more |