Security update for freetype2
This update for freetype2 fixes the following issues - Update to version 2.14.3 - CVE-2026-23865: Integer overflow in the tt_var_load_item_variation_store function (bsc#1259118). - CVE-2026-50811: out-of-bounds read vulnerabilityin src/truetype/ttgxvar.c in the TT_Get_Var_Design implementation used by FT_Get_Var_Design_Coordinates (bsc#1271045).
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for freetype2 fixes the following issues - Update to version 2.14.3 - CVE-2026-23865: Integer overflow in the tt_var_load_item_variation_store function (bsc#1259118). - CVE-2026-50811: out-of-bounds read vulnerabilityin src/truetype/ttgxvar.c in the TT_Get_Var_Design implementation used by FT_Get_Var_Design_Coordinates (bsc#1271045).
05 / REFERENCES