CVE-2018-6942: Canonical Ubuntu Linux
Medium severity, CVSS 6.5. EPSS: 2.1% chance of exploitation in the next 30 days.
An issue was discovered in FreeType 2 through 2.9. A NULL pointer dereference in the Ins_GETVARIATION() function within ttinterp.c could lead to DoS via a crafted font file.
Affected products
Published 2018-02-13. Last modified 2026-06-17.