REDHAT-BUG-2443891: Integer Overflow
Published Mar 2, 2026
·Updated
An integer overflow in the ttvarloaditemvariationstore function of the Freetype library in versions 2.13.2 and 2.13.3 may allow for an out of bounds read operation when parsing HVAR/VVAR/MVAR tables in OpenType variable fonts. This issue is fixed in version 2.14.2.
Affected Software
1 affected component
FreeType FreeType>=2.13.2<=2.13.3
Event History
Mar 2, 2026
Data Sourced
via Red Hat·05:03 PM
DescriptionSeverityAffected Software