OSV-2021-719

See a problem?
Import Source
https://github.com/google/oss-fuzz-vulns/blob/main/vulns/freetype2/OSV-2021-719.yaml
JSON Data
https://api.osv.dev/v1/vulns/OSV-2021-719
Published
2021-05-02T00:01:07.686676Z
Modified
2022-04-13T03:04:34.916720Z
Summary
Heap-buffer-overflow in tt_face_get_paint_layers
Details

OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=33855

Crash type: Heap-buffer-overflow READ 1
Crash state:
tt_face_get_paint_layers
FT_Get_Paint_Layers
colrv1_traverse_paint
References

Affected packages

OSS-Fuzz / freetype2

Package

Name
freetype2
Purl
pkg:generic/freetype2

Affected ranges

Type
GIT
Repo
https://github.com/freetype/freetype2-testing.git
Events

Ecosystem specific

{
    "severity": "MEDIUM"
}

Database specific

{
    "fixed_range": "ca6201f250316e6efd445a7fd92c4d82950e4cb0:3961a4e8257662b1e0c642e21c251723b48fbcde"
}