Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:31147
HistoryJul 06, 2021 - 9:15 a.m.

Arbitrary Code Execution

2021-07-0609:15:30
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12

0.039 Low

EPSS

Percentile

92.0%

harfbuzz is vulnerable to arbitrary code execution. A buffer over-read in hb-ot-layout-gpos-table.hh allows an attacker to cause a denial of service or potentially execute arbitrary code on the host OS.

CPENameOperatorVersion
harfbuzzle0.9.41.1
harfbuzzle0.9.41.1