CVE-2017-7858

Source
https://cve.org/CVERecord?id=CVE-2017-7858
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-7858.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2017-7858
Published
2017-04-14T04:59:00.307Z
Modified
2026-01-16T06:48:51.312794Z
Severity
  • 9.8 (Critical) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

FreeType 2 before 2017-03-07 has an out-of-bounds write related to the TTGetMMVar function in truetype/ttgxvar.c and the sfntinit_face function in sfnt/sfobjs.c.

References

Affected packages

Git / cgit.git.savannah.gnu.org/cgit/freetype/freetype2.git

Affected ranges

Type
GIT
Repo
https://cgit.git.savannah.gnu.org/cgit/freetype/freetype2.git
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
779309744222a736eba0f1731e8162fce6288d4e

Database specific

source

"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-7858.json"

Git / github.com/aseprite/freetype2

Affected ranges

Type
GIT
Repo
https://github.com/aseprite/freetype2
Events
Introduced
0 Unknown introduced commit / All previous commits are affected

Database specific

source

"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2017-7858.json"