CVE-2017-11571
FontForge 20161012 is vulnerable to a stack-based buffer overflow in addnibble (parsettf.c) resulting in DoS or code exe
FontForge 20161012 is vulnerable to a stack-based buffer overflow in addnibble (parsettf.c) resulting in DoS or code execution via a crafted otf file.
HIGH · CVSS 7.8
EPSS 0.00513
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0