Heap-based Buffer Overflow in FreeType 2 (CVE-2017-8105)

Heap-based Buffer Overflow in FreeType 2 (CVE-2017-8105)

CVE-2017-7857 · HIGH Severity

AV:N/AC:L/AU:N/C:P/I:P/A:P

FreeType 2 before 2017-03-08 has an out-of-bounds write caused by a heap-based buffer overflow related to the TT_Get_MM_Var function in truetype/ttgxvar.c and the sfnt_init_face function in sfnt/sfobjs.c.

Learn more about our Web Application Penetration Testing UK.