CVE-2018-7999

Severity CVSS v4.0:
Pending analysis
Type:
CWE-476 NULL Pointer Dereference
Publication date:
09/03/2018
Last modified:
07/11/2023

Description

In libgraphite2 in graphite2 1.3.11, a NULL pointer dereference vulnerability was found in Segment.cpp during a dumbRendering operation, which may allow attackers to cause a denial of service or possibly have unspecified other impact via a crafted .ttf file.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:sil:graphite2:1.3.11:*:*:*:*:*:*:*