OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=10081
Crash type: Heap-buffer-overflow READ 8
Crash state:
OT::LigatureSubstFormat1::closure
_hb_void_t const* OT::hb_closure_context_t::dispatch<OT::LigatureSubstFormat1>
OT::hb_closure_context_t::return_t OT::LigatureSubst::dispatch<OT::hb_closure_co