CVE-2026-34085
EUVD-2026-1593425.03.2026, 17:17
fontconfig before 2.17.1 has an off-by-one error in allocation during sfnt capability handling, leading to a one-byte out-of-bounds write, and potentially a crash or code execution. This is in FcFontCapabilities in fcfreetype.c.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| fontconfig_project | fontconfig | 𝑥 < 2.17.1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration