CVE-2026-22693 (CNNVD-202601-1735)
中文标题:
HarfBuzz 安全漏洞
英文标题:
Null Pointer Dereference in SubtableUnicodesCache::create leading to DoS
漏洞描述
中文描述:
HarfBuzz是HarfBuzz开源的一款用于OpenType字体的文本引擎。 HarfBuzz 12.3.0之前版本存在安全漏洞,该漏洞源于SubtableUnicodesCache::create函数未检查hb_malloc返回值,可能导致空指针取消引用和分段违规。
英文描述:
HarfBuzz is a text shaping engine. Prior to version 12.3.0, a null pointer dereference vulnerability exists in the SubtableUnicodesCache::create function located in src/hb-ot-cmap-table.hh. The function fails to check if hb_malloc returns NULL before using placement new to construct an object at the returned pointer address. When hb_malloc fails to allocate memory (which can occur in low-memory conditions or when using custom allocators that simulate allocation failures), it returns NULL. The code then attempts to call the constructor on this null pointer using placement new syntax, resulting in undefined behavior and a Segmentation Fault. This issue has been patched in version 12.3.0.
CWE类型:
标签:
受影响产品
| 厂商 | 产品 | 版本 | 版本范围 | 平台 | CPE |
|---|---|---|---|---|---|
| harfbuzz | harfbuzz | < 12.3.0 | - | - |
cpe:2.3:a:harfbuzz:harfbuzz:<_12.3.0:*:*:*:*:*:*:*
|
解决方案
中文解决方案:
英文解决方案:
临时解决方案:
参考链接
cve.org
cve.org
nvd.nist.gov
nvd.nist.gov
CVSS评分详情
3.1 (cna)
MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
时间信息
利用信息
数据源详情
| 数据源 | 记录ID | 版本 | 提取时间 |
|---|---|---|---|
| CVE | cve_CVE-2026-22693 |
2026-01-11 02:02:50 | 2026-01-12 02:12:39 |
| NVD | nvd_CVE-2026-22693 |
2026-01-11 03:00:07 | 2026-01-12 02:28:17 |
| CNNVD | cnnvd_CNNVD-202601-1735 |
2026-01-13 07:38:23 | 2026-01-13 07:41:16 |
版本与语言
安全公告
变更历史
查看详细变更
- vulnerability_type: 未提取 -> 其他
- cnnvd_id: 未提取 -> CNNVD-202601-1735
- data_sources: ['cve', 'nvd'] -> ['cnnvd', 'cve', 'nvd']
查看详细变更
- references_count: 3 -> 4
查看详细变更
- references_count: 2 -> 3
查看详细变更
- data_sources: ['cve'] -> ['cve', 'nvd']