CVE-2024-56732
EUVD-2024-5337927.12.2024, 20:15
HarfBuzz is a text shaping engine. Starting with 8.5.0 through 10.0.1, there is a heap-based buffer overflow in the hb_cairo_glyphs_from_buffer function.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| harfbuzz_project | harfbuzz | 8.5.0 ≤ 𝑥 ≤ 10.0.1 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Amazon Linux Releases
Amazon Package | |||
|---|---|---|---|
| harfbuzz |
| ||
| harfbuzz-debuginfo |
| ||
| harfbuzz-debugsource |
| ||
| harfbuzz-devel |
| ||
| harfbuzz-devel-debuginfo |
| ||
| harfbuzz-icu |
| ||
| harfbuzz-icu-debuginfo |
|
Azure Linux Releases