Heap-based buffer overflow in the Mac_Read_POST_Resource function in base/ftobjs.c in FreeType before 2.4.0 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted length value in a POST fragment header in a font file.
Get an AI-powered plain-language explanation of this vulnerability and remediation steps.
Login to generate AI explanation30 reference(s) from NVD