Open Source Security mailing list@oss_securityDisclosure
The text reports CVE‑2026‑23865, an out‑of‑bounds read flaw in FreeType’s variable‑font table parsing, and notes the vulnerability is fixed in version 2.14.2.
Hephaestvs@Vulcanux_Disclosure
The post announces a newly discovered vulnerability (CVE-2026-23865) affecting the FreeType rendering library, noting information disclosure and denial‑of‑service risks without providing exploit details or mitigation.
Ferramentas Linux@Cezar_H_LinuxDisclosure
The tweet announces that CVE‑2026‑23865 is a critical integer arithmetic flaw in FreeType that can leak memory, and refers to Ubuntu USN‑8086‑1 for a fix.
Vulmon Vulnerability Feed@VulmonFeedsDisclosure
A new integer overflow vulnerability in Freetype Library 2.13.2 and 2.13.3 has been disclosed, allowing a bounds read exploit.
Infoflowcloud@infoflowcloudDisclosure
The post announces CVE-2026-23865, detailing an integer overflow in Freetype that could lead to an out‑of‑bounds read, but offers no PoC, exploit, or patch information.
CVE@CVEnewDisclosure
The text announces CVE-2026-23865, an integer overflow in Freetype's tt_var_load_item_variation_store that could lead to out‑of‑bounds reads in versions 2.13.2 and 2.13.3.