zlacker

[parent] [thread] 1 comments
1. UncleO+(OP)[view] [source] 2024-06-24 16:38:57
Can someone explain why HarfBuzz isn't a potentially serious security vulnerability? Couldn't someone create a .ttf file that looks like one of the standard .ttf files but includes similar capability to this llama.ttf to execute arbitrary code?
replies(1): >>progbi+w2
2. progbi+w2[view] [source] 2024-06-24 16:52:32
>>UncleO+(OP)
https://webassembly.org/docs/security/
[go to top]