CyberRota Analysis
AI-GeneratedThe vulnerability exists in the stbtt_GetGlyphShape component of the stb library, where an out-of-bounds read can be exploited by attackers through specially crafted TTF files, potentially leading to a Denial of Service (DoS). Organizations utilizing the stb library in their applications should prioritize addressing this issue to mitigate the risk of service interruptions.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
An out-of-bounds read in the stbtt_GetGlyphShape component of nothings stb commit 31c1ad3 allows attackers to cause a Denial of Service (DoS) via sending a crafted TTF file.