Security Advisory
CVE-2017-11576
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
FontForge 20161012 does not ensure a positive size in a weight vector memcpy call in readcfftopdict (parsettf.c) resulting in DoS via a crafted otf file.