Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:4236
HistoryMay 16, 2017 - 7:13 a.m.

Out-of-Bounds Write

2017-05-1607:13:21
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
14

EPSS

0.012

Percentile

85.1%

FreeType is vulnerable to an out-of-bounds write. This is caused by the t1_decoder_parse_charstrings function in psaux/t1decode.c receiving a malicious string. This can cause a heap-based buffer overflow that can lead to an out-of-bounds write.