CVE-2020-26682

Severity CVSS v4.0:
Pending analysis
Type:
CWE-190 Integer Overflow or Wraparound
Publication date:
16/10/2020
Last modified:
15/06/2022

Description

In libass 0.14.0, the `ass_outline_construct`'s call to `outline_stroke` causes a signed integer overflow.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:libass_project:libass:0.14.0:*:*:*:*:*:*:*