{"id":"OSV-2023-137","summary":"Heap-buffer-overflow in OT::Layout::Common::Coverage::get_population","details":"OSS-Fuzz report: https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=56510\n\n```\nCrash type: Heap-buffer-overflow READ 1\nCrash state:\nOT::Layout::Common::Coverage::get_population\nOT::Layout::GPOS_impl::SinglePosFormat1::sanitize\nhb_sanitize_context_t::return_t OT::Layout::GPOS_impl::PosLookupSubTable::dispat\n```\n","modified":"2026-01-21T00:33:41.940724Z","published":"2023-03-03T13:00:38.278632Z","references":[{"type":"REPORT","url":"https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=56510"}],"affected":[{"package":{"name":"harfbuzz","ecosystem":"OSS-Fuzz","purl":"pkg:generic/harfbuzz"},"ranges":[{"type":"GIT","repo":"https://github.com/harfbuzz/harfbuzz.git","events":[{"introduced":"918193ebf908d35c88bb71d02dfc14bc41ffc31d"},{"fixed":"08784baf101aea472c133dcd67604b475ace3772"}]}],"versions":["7.1.0","7.2.0","7.3.0","8.0.0","8.0.1","8.1.0","8.1.1","8.2.0","8.2.1","8.2.2","8.3.0","8.3.1","8.4.0","8.5.0","9.0.0","10.0.0","10.0.1","10.1.0","10.2.0","10.3.0","10.4.0","11.0.0","11.0.1","11.1.0","11.2.0","11.2.1","11.3.0","11.3.1","11.3.2","11.3.3","11.4.0","11.4.1","11.4.2","11.4.3","11.4.4","11.4.5","11.5.0","11.5.1","12.0.0","12.1.0","12.2.0","12.3.0"],"ecosystem_specific":{"severity":"MEDIUM"},"database_specific":{"source":"https://github.com/google/oss-fuzz-vulns/blob/main/vulns/harfbuzz/OSV-2023-137.yaml"}}],"schema_version":"1.7.3"}