OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=10948
Crash type: Heap-buffer-overflow READ 1
Crash state:
BEInt<unsigned int, 4>::operator unsigned int
OT::OffsetTo<OT::UnsizedArrayOf<OT::IntType<short, 2u> >, OT::IntType<unsigned i
AAT::KerxSubTableFormat1::driver_context_t::driver_context_t