Metrics
Affected Vendors & Products
Fri, 14 Mar 2025 17:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Fri, 14 Mar 2025 15:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Fri, 14 Mar 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Fri, 14 Mar 2025 05:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Fri, 14 Mar 2025 01:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Thu, 13 Mar 2025 23:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Thu, 13 Mar 2025 17:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Thu, 13 Mar 2025 13:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An out of bounds write exists in FreeType versions 2.13.0 and below when attempting to parse font subglyph structures related to TrueType GX and variable font files. The vulnerable code assigns a signed short value to an unsigned long and then adds a static value causing it to wrap around and allocate too small of a heap buffer. The code then writes up to 6 signed long integers out of bounds relative to this buffer. This may result in arbitrary code execution. This vulnerability may have been exploited in the wild. | An out of bounds write exists in FreeType versions 2.13.0 and below (newer versions of FreeType are not vulnerable) when attempting to parse font subglyph structures related to TrueType GX and variable font files. The vulnerable code assigns a signed short value to an unsigned long and then adds a static value causing it to wrap around and allocate too small of a heap buffer. The code then writes up to 6 signed long integers out of bounds relative to this buffer. This may result in arbitrary code execution. This vulnerability may have been exploited in the wild. |
Thu, 13 Mar 2025 05:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Thu, 13 Mar 2025 04:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Thu, 13 Mar 2025 02:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Title | freetype: OOB write when attempting to parse font subglyph structures related to TrueType GX and variable font files | |
References |
| |
Metrics |
threat_severity
|
threat_severity
|
Tue, 11 Mar 2025 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Weaknesses | CWE-787 | |
Metrics |
ssvc
|
Tue, 11 Mar 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | An out of bounds write exists in FreeType versions 2.13.0 and below when attempting to parse font subglyph structures related to TrueType GX and variable font files. The vulnerable code assigns a signed short value to an unsigned long and then adds a static value causing it to wrap around and allocate too small of a heap buffer. The code then writes up to 6 signed long integers out of bounds relative to this buffer. This may result in arbitrary code execution. This vulnerability may have been exploited in the wild. | |
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: facebook
Published: 2025-03-11T13:28:31.705Z
Updated: 2025-03-14T17:02:49.679Z
Reserved: 2025-02-21T19:53:14.160Z
Link: CVE-2025-27363

Updated: 2025-03-13T23:02:56.098Z

Status : Awaiting Analysis
Published: 2025-03-11T14:15:25.427
Modified: 2025-03-14T17:15:51.833
Link: CVE-2025-27363
