Loading
bdf/bdflib.c in FreeType before 2.5.4 identifies property names by only verifying that an initial substring is present, which allows remote attackers to discover heap pointer values and bypass the ASLR protection mechanism via a crafted BDF font.
Use CWE-264, Canonical vendor hub and Ubuntu Linux product page to widen CVE-2014-9675 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2025-32463, CVE-2022-1736 and CVE-2025-33208 for nearby disclosures in the same product family.