Required CVE Record Information
Description
FontForge 20161012 is vulnerable to a heap-based buffer overflow in readcffset (parsettf.c) resulting in DoS or code execution via a crafted otf file.
References 2 Total
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 2 Total
- https://github.com/fontforge/fontforge/issues/3090 x_transferred
- debian.org: DSA-3958 vendor-advisoryx_transferred