libass 0.15.x before 0.15.1 has a heap-based buffer overflow in decode_chars (called from decode_font and process_text) because the wrong integer data type is used for subtraction.
References
Configurations
History
No history.
Information
Published : 2021-07-20 07:15
Updated : 2024-11-21 05:29
NVD link : CVE-2020-36430
Mitre link : CVE-2020-36430
CVE.ORG link : CVE-2020-36430
JSON object : View
Products Affected
libass_project
- libass
fedoraproject
- fedora
CWE
CWE-787
Out-of-bounds Write