FreeType 2.8.1 has a signed integer overflow in cf2_doFlex in cff/cf2intrp.c.
References
| Link | Resource |
|---|---|
| https://gitlab.freedesktop.org/freetype/freetype/-/issues/1312 | Exploit |
| https://security-tracker.debian.org/tracker/CVE-2025-23022 | Issue Tracking |
Configurations
History
No history.
Information
Published : 2025-01-10 15:15
Updated : 2025-01-16 21:12
NVD link : CVE-2025-23022
Mitre link : CVE-2025-23022
CVE.ORG link : CVE-2025-23022
JSON object : View
Products Affected
freetype
- freetype
CWE
CWE-190
Integer Overflow or Wraparound
