An integer overflow in the...
Moderate severity
Unreviewed
Published
Mar 2, 2026
to the GitHub Advisory Database
•
Updated Mar 4, 2026
Description
Published by the National Vulnerability Database
Mar 2, 2026
Published to the GitHub Advisory Database
Mar 2, 2026
Last updated
Mar 4, 2026
An integer overflow in the tt_var_load_item_variation_store function of the Freetype library in versions 2.13.2 and 2.13.3 may allow for an out of bounds read operation when parsing HVAR/VVAR/MVAR tables in OpenType variable fonts. This issue is fixed in version 2.14.2.
References