PT-2026-34032 · Julia · Fontconfig Jll

Published

2026-04-11

·

Updated

2026-04-11

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
fontconfig before 2.17.1 has an off-by-one error in allocation during sfnt capability handling, leading to a one-byte out-of-bounds write, and potentially a crash or code execution. This is in FcFontCapabilities in fcfreetype.c.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

JLSEC-2026-79

Affected Products

Fontconfig Jll