
Cloud Vulnerability DB
A community-led vulnerabilities database
OTFCC commit 617837b contains a heap buffer overflow vulnerability (CVE-2022-35043) that was discovered in the /release-x64/otfccdump+0x6c08a6 component (Debian Security, NVD).
The vulnerability is identified as a heap buffer overflow issue affecting specific versions of OTFCC software. The vulnerability is specifically located in the /release-x64/otfccdump+0x6c08a6 component (NVD).
The vulnerability affects multiple versions of the texlive-bin package, with confirmed vulnerable versions in bookworm (2022.20220321.62855-5.1+deb12u2), trixie (2024.20240313.70630+ds-5), and sid (2024.20240313.70630+ds-6) distributions (Debian Security).
Fixed versions have been released for certain distributions. The bullseye distribution has been fixed with version 2020.20200327.54578-7+deb11u2. It's worth noting that some earlier versions like bullseye and buster were marked as 'not affected' as the vulnerable code was not present in these releases (Debian Security).
Source: This report was generated using AI
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."