Segmentation Violation in ttftool by Matthias Kramm
CVE-2022-46440

5.5MEDIUM

Key Information:

Vendor

Swftools

Status
Vendor
CVE Published:
24 February 2023

What is CVE-2022-46440?

A segmentation violation has been identified in ttftool v0.9.2, originating from the readU16 function located in ttf.c. This flaw could lead to unintended behavior and potential system instability, making it crucial for users to assess and address the impact of this vulnerability on their environment.

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.