In libpixman in Pixman before 0.42.2, there is an out-of-bounds write (aka heap-based buffer overflow) in rasterizeedges8 due to an integer overflow in pixmansamplefloor_y.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-44638.json"