7.6
CVSSv3

CVE-2015-8947

Published: 19/07/2016 Updated: 05/01/2018
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 7.6 | Impact Score: 4.7 | Exploitability Score: 2.8
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

hb-ot-layout-gpos-table.hh in HarfBuzz prior to 1.0.5 allows remote malicious users to cause a denial of service (buffer over-read) or possibly have unspecified other impact via crafted data, a different vulnerability than CVE-2016-2052.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

harfbuzz project harfbuzz

Vendor Advisories

HarfBuzz could be made to crash or run programs as your login if it processed specially crafted data ...
hb-ot-layout-gpos-tablehh in HarfBuzz before 105 allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecified other impact via crafted data, a different vulnerability than CVE-2016-2052 ...