https://seclists.org/oss-sec/2025/q2/107: CVE-2025-27363: out of bounds write in FeType <= 2.13.0
Published May 6, 2025
·Updated
Affected Software
1 affected component
FreeType FreeType<=2.13.0
Frequently Asked Questions
1
What is the severity of CVE-2025-27363?
CVE-2025-27363 is classified as a high severity vulnerability due to the potential for out of bounds write attacks.
2
How do I fix CVE-2025-27363?
To fix CVE-2025-27363, upgrade FreeType to version 2.13.1 or later as recommended.
3
What type of vulnerability is CVE-2025-27363?
CVE-2025-27363 is an out of bounds write vulnerability affecting FreeType software.
4
Is CVE-2025-27363 currently being exploited?
Yes, CVE-2025-27363 has been added to the CISA Known Exploited Vulnerabilities Catalog, indicating ongoing exploits.
5
Which versions of FreeType are affected by CVE-2025-27363?
FreeType versions prior to 2.13.1 are affected by CVE-2025-27363.