Harfbuzz Project Harfbuzz 2.9.0

CPE Details

Harfbuzz Project Harfbuzz 2.9.0
2.9.0
2022-01-11
18h56 +00:00
2022-07-01
14h48 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:harfbuzz_project:harfbuzz:2.9.0:*:*:*:*:*:*:*

Informations

Vendor

harfbuzz_project

Product

harfbuzz

Version

2.9.0

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2023-25193 2023-02-04 00h00 +00:00 hb-ot-layout-gsubgpos.hh in HarfBuzz through 6.0.0 allows attackers to trigger O(n^2) growth via consecutive marks during the process of looking back for base glyphs when attaching marks.
7.5
High
CVE-2021-45931 2021-12-31 22h58 +00:00 HarfBuzz 2.9.0 has an out-of-bounds write in hb_bit_set_invertible_t::set (called from hb_sparseset_t::set and hb_set_copy).
6.5
Medium