cve/2014/CVE-2014-9745.md
2024-05-26 14:27:05 +02:00

674 B

CVE-2014-9745

Description

The parse_encoding function in type1/t1load.c in FreeType before 2.5.3 allows remote attackers to cause a denial of service (infinite loop) via a "broken number-with-base" in a Postscript stream, as demonstrated by 8#garbage.

POC

Reference

No PoCs from references.

Github