Control: retitle -1 src/truetype/ttgxvar.c (tt_hvadvance_adjust): Integer overflow. Control: tags -1 - security
On Wed, Apr 19, 2023 at 09:20:48PM +0200, Salvatore Bonaccorso wrote: > Source: freetype > Version: 2.12.1+dfsg-4 > Severity: important > Tags: security upstream > X-Debbugs-Cc: [email protected], Debian Security Team > <[email protected]> > > Hi, > > The following vulnerability was published for freetype. > > CVE-2023-2004[0]: > | An integer overflow vulnerability was discovered in Freetype in > | tt_hvadvance_adjust() function in src/truetype/ttgxvar.c. The CVE got rejected by the assigning CNA as further investigation showed that there is no security issue. Regards, Salvatore

