EIP-2026-103473
PRE-CVEFreeType 2.6.1 - TrueType tt_sbit_decoder_load_bit_aligned Heap Out-of-Bounds Read
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-103473. PoCs published by Google Security Research.
AI-analyzed exploit summary This exploit demonstrates a heap-based out-of-bounds memory read vulnerability in FreeType's `tt_sbit_decoder_load_bit_aligned` function, triggered by malformed font files. The provided PoC files cause a heap-buffer-overflow detected by AddressSanitizer.
Description
FreeType 2.6.1 - TrueType tt_sbit_decoder_load_bit_aligned Heap Out-of-Bounds Read
Exploits (1)
This exploit demonstrates a heap-based out-of-bounds memory read vulnerability in FreeType's `tt_sbit_decoder_load_bit_aligned` function, triggered by malformed font files. The provided PoC files cause a heap-buffer-overflow detected by AddressSanitizer.