5.5
CVSSv3

CVE-2022-33068

Published: 23/06/2022 Updated: 07/11/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

An integer overflow in the component hb-ot-shape-fallback.cc of Harfbuzz v4.3.0 allows malicious users to cause a Denial of Service (DoS) via unspecified vectors.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

harfbuzz project harfbuzz 4.3.0

fedoraproject fedora 35

fedoraproject fedora 36

Vendor Advisories

Synopsis Moderate: harfbuzz security update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for harfbuzz is now available for Red Hat Enterprise Linux 9Red Hat Product Security has rated this update as having a ...
Debian Bug report logs - #1013673 harfbuzz: CVE-2022-33068 Package: src:harfbuzz; Maintainer for src:harfbuzz is أحمد المحمودي (Ahmed El-Mahmoudy) <aelmahmoudy@userssourceforgenet>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Fri, 24 Jun 2022 19:57:01 UTC Severity: important Tags: securi ...
An integer overflow in the component hb-ot-shape-fallbackcc of Harfbuzz v430 allows attackers to cause a Denial of Service (DoS) via unspecified vectors ...
Severity Unknown Remote Unknown Type Unknown Description AVG-2793 harfbuzz 430-1 440-1 Unknown Fixed ...