CVE-2021-45931 (https://github.com/google/oss-fuzz-vulns/blob/main/vulns/harfbuzz/OSV-2021-1159.yaml): HarfBuzz 2.9.0 has an out-of-bounds write in hb_bit_set_invertible_t::set (called from hb_sparseset_t<hb_bit_set_invertible_t>::set and hb_set_copy).
Nothing to do for office here anymore
GLSA request filed
GLSA released, all done!
The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/data/glsa.git/commit/?id=1733373e809dacf94df6a7f9b4e247232c6d7154 commit 1733373e809dacf94df6a7f9b4e247232c6d7154 Author: GLSAMaker <glsamaker@gentoo.org> AuthorDate: 2022-09-25 13:35:18 +0000 Commit: John Helmert III <ajak@gentoo.org> CommitDate: 2022-09-25 13:42:21 +0000 [ GLSA 202209-11 ] HarfBuzz: Multiple vulnerabilities Bug: https://bugs.gentoo.org/830372 Bug: https://bugs.gentoo.org/856049 Signed-off-by: GLSAMaker <glsamaker@gentoo.org> Signed-off-by: John Helmert III <ajak@gentoo.org> glsa-202209-11.xml | 44 ++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 44 insertions(+)