ZeroHour

CVE-2025-20001

PoC ×2
CVSS 3.1
6.5 medium
EPSS
<1%p43
Published
()
Modified
Description

An out-of-bounds read vulnerability exists in High-Logic FontCreator 15.0.0.3015. A specially crafted font file can trigger this vulnerability which can lead to disclosure of sensitive information. An attacker needs to trick the user into opening the malicious file to trigger this vulnerability.

Vendors
high-logic
Products
fontcreator
Weakness
CWE-125
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

In the news