FreeType is written in C, designed to be small,efficient, highly customizable, and portable while capable of producing high-quality output (glyph images) of most vector and bitmap font formats
Security Fix(es):
An integer overflow in the ttvarloaditemvariation_store function of the Freetype library in versions 2.13.2 and 2.13.3 may allow for an out of bounds read operation when parsing HVAR/VVAR/MVAR tables in OpenType variable fonts. This issue is fixed in version 2.14.2.(CVE-2026-23865)
{
"severity": "Medium"
}{
"noarch": [
"freetype-help-2.13.2-5.oe2403.noarch.rpm"
],
"src": [
"freetype-2.13.2-5.oe2403.src.rpm"
],
"x86_64": [
"freetype-2.13.2-5.oe2403.x86_64.rpm",
"freetype-debuginfo-2.13.2-5.oe2403.x86_64.rpm",
"freetype-debugsource-2.13.2-5.oe2403.x86_64.rpm",
"freetype-demos-2.13.2-5.oe2403.x86_64.rpm",
"freetype-devel-2.13.2-5.oe2403.x86_64.rpm"
],
"aarch64": [
"freetype-2.13.2-5.oe2403.aarch64.rpm",
"freetype-debuginfo-2.13.2-5.oe2403.aarch64.rpm",
"freetype-debugsource-2.13.2-5.oe2403.aarch64.rpm",
"freetype-demos-2.13.2-5.oe2403.aarch64.rpm",
"freetype-devel-2.13.2-5.oe2403.aarch64.rpm"
]
}