Description: Stack-buffer-overflow in glyph handling. Credit to Google Chrome Security Team (Cris Neckar). --- src/3rdparty/harfbuzz/src/harfbuzz-myanmar.c | 1 + 1 file changed, 1 insertion(+) --- a/src/3rdparty/harfbuzz/src/harfbuzz-myanmar.c +++ b/src/3rdparty/harfbuzz/src/harfbuzz-myanmar.c @@ -359,6 +359,7 @@ static HB_Bool myanmar_shape_syllable(HB if (kinzi >= 0 && i > base && (cc & Mymr_CF_AFTER_KINZI)) { reordered[len] = Mymr_C_NGA; reordered[len+1] = Mymr_C_VIRAMA; + if (len > 0) properties[len-1] = AboveForm; properties[len] = AboveForm; len += 2;