Headline
CVE-2022-33047
OTFCC v0.10.4 was discovered to contain a heap buffer overflow after free via otfccbuild.c.
Related news
CVE-2022-35459: otfcc's issue Reference | Victory+'s blog
OTFCC v0.10.4 was discovered to contain a heap-buffer overflow via /release-x64/otfccdump+0x6e412a.