hb-ot-layout-gpos-table.hh in HarfBuzz before 1.0.5 allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecified other impact via crafted data, a different vulnerability than CVE-2016-2052.
2016-07-19T10:59:00.150
2025-04-12T10:46:40.837
Deferred
CVSSv3.0: 7.6 (HIGH)
AV:N/AC:L/Au:N/C:P/I:P/A:P
10.0
6.4
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | harfbuzz_project | harfbuzz | ≤ 1.0.4 | Yes |