Vulnerabilities
Vulnerable Software
hb-ot-layout-gsubgpos.hh in HarfBuzz through 6.0.0 allows attackers to trigger O(n^2) growth via consecutive marks during the process of looking back for base glyphs when attaching marks.
CVSS Score
7.5
EPSS Score
0.001
Published
2023-02-04
HarfBuzz 2.9.0 has an out-of-bounds write in hb_bit_set_invertible_t::set (called from hb_sparseset_t<hb_bit_set_invertible_t>::set and hb_set_copy).
CVSS Score
6.5
EPSS Score
0.002
Published
2022-01-01


Contact Us

Shodan ® - All rights reserved