Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2010-3855

23
FAUCET Score

CVE-2010-3855 describes a buffer overflow vulnerability in the FreeType library, specifically within the ft_var_readpackedpoints function in truetype/ttgxvar.c, affecting versions 2.4.3 and earlier. This flaw allows remote attackers to trigger a denial of service or potentially execute arbitrary code by supplying a specially crafted TrueType GX font. With a CVSS score of 6.8, this vulnerability is rated as medium severity, indicating a moderate attack complexity (AC:M) and potential for partial impact on confidentiality, integrity, and availability (C:P, I:P, A:P). There is no evidence of active exploitation, publicly available exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.

Impacted Technologies

VendorProductVersion(s)CPE
<= 2.4.3CPE matchmatch criteria
cpe:2.3:a:freetype:freetype:*:*:*:*:*:*:*:*
1.3.1CPE matchmatch criteria
cpe:2.3:a:freetype:freetype:1.3.1:*:*:*:*:*:*:*
2.0.6CPE matchmatch criteria
cpe:2.3:a:freetype:freetype:2.0.6:*:*:*:*:*:*:*
2.0.9CPE matchmatch criteria
cpe:2.3:a:freetype:freetype:2.0.9:*:*:*:*:*:*:*
2.1CPE matchmatch criteria
cpe:2.3:a:freetype:freetype:2.1:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 2.0

6.8MEDIUM

AV:N/AC:M/Au:N/C:P/I:P/A:P

Confidentiality Impact
PARTIAL
Integrity Impact
PARTIAL
Availability Impact
PARTIAL
Access Vector
NETWORK
Access Complexity
MEDIUM
Authentication
NONE
Exploitability Score
8.6
Impact Score
6.4
CvssVersion
2.0

Exploit Intelligence

EPSS Score
5.28%
Probability of exploitation in next 30 days
EPSS Percentile
91.7%
Percentile rank of EPSS score among Peer Group
As of 2026-07-28
Model: v2026.06.15
This CVE's current EPSS score of 0.0528 is in the 90th percentile among its peer group of 19,958 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (3)

redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 4Fixed in: freetype-0:2.1.9-17.el4_8.1
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 5Fixed in: freetype-0:2.2.1-28.el5_5.1
View patch
redhatpatch availablevia redhat_api
Product: Red Hat Enterprise Linux 6Fixed in: freetype-0:2.3.11-6.el6_0.2
View patch

Vendor Advisories (1)

redhatCVE-2010-3855Important

Freetype : Heap based buffer overflow in ft_var_readpackedpoints()

Oct 11, 2010

References

bugs.debian.org / cgi-bin/bugreport.cgi
git.savannah.gnu.org / cgit/freetype/freetype2.git/commit
lists.apple.com / archives/security-announce/2011//Jul/msg00000.html
lists.apple.com / archives/security-announce/2011//Jul/msg00001.html
lists.apple.com / archives/security-announce/2011//Mar/msg00003.html
lists.apple.com / archives/security-announce/2011//Mar/msg00005.html
lists.apple.com / archives/security-announce/2011/Mar/msg00006.html
lists.fedoraproject.org / pipermail/package-announce/2010-November/050965.html
lists.fedoraproject.org / pipermail/package-announce/2010-November/051231.html
lists.fedoraproject.org / pipermail/package-announce/2010-November/051251.html
secunia.com / advisories/42289
secunia.com / advisories/42295
secunia.com / advisories/43138
secunia.com / advisories/48951
savannah.nongnu.org / bugs
support.apple.com / kb/HT4564
support.apple.com / kb/HT4565
support.apple.com / kb/HT4581
support.apple.com / kb/HT4802
support.apple.com / kb/HT4803
support.avaya.com / css/P8/documents/100122733
debian.org / security/2011/dsa-2155
mandriva.com / security/advisories
mandriva.com / security/advisories
redhat.com / support/errata/RHSA-2010-0889.html
securityfocus.com / bid/44214
securitytracker.com / id
ubuntu.com / usn/USN-1013-1
vupen.com / english/advisories/2010/3037
vupen.com / english/advisories/2011/0246