CVE-2020-6617: High severity Nothings Stb Truetype.h vulnerability
Published Jan 8, 2020
·Updated
stb stbtruetype.h through 1.22 has an assertion failure in stbttcffint.
Affected Software
1 affected component
Nothings Stb Truetype.h<=1.22
Event History
Jan 8, 2020
CVE Published
via MITRE·10:52 PM
Data Sourced
via MITRE·10:52 PM
Description
Data Sourced
via NVD·11:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID of stb_truetype.h through 1.22?
The vulnerability ID of stb_truetype.h through 1.22 is CVE-2020-6617.
2
What is the severity of CVE-2020-6617?
CVE-2020-6617 has a severity score of 8.8 (high).
3
What is the affected software for CVE-2020-6617?
The affected software for CVE-2020-6617 is stb_truetype.h version 1.22 by Nothings.
4
What is the description of CVE-2020-6617?
CVE-2020-6617 is a vulnerability in stb_truetype.h through 1.22 that leads to an assertion failure in stbtt__cff_int.
5
Is there a fix available for CVE-2020-6617?
At the moment, there is no known fix available for CVE-2020-6617. It is recommended to follow the development of the issue on the official GitHub repository.