Integer signedness error in the Mac_Read_POST_Resource function in base/ftobjs.c in FreeType before 2.5.4 allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted Mac font.
| Product | Vendor | Version |
|---|---|---|
| n/a | n/a | < 110bf15825edf4f20bc4e56aba624297861b06ab |
| n/a | n/a | 3.1.3 |