FreeType 2.6.1 TrueType Parsing Heap-Based Out Of Bounds Read
Posted by deepcore on November 10, 2015 – 3:07 pm
A heap-based out-of-bounds memory read has been encountered in FreeType. It has been reproduced with the current version of freetype2 from master git branch, with a 64-bit build of the ftbench utility compiled with AddressSanitizer. Three proof of concepts are included.
Post a reply
You must be logged in to post a comment.