HarfBuzz::Shaper versions before 0.032 for Perl contains a bundled library with a null pointer dereference vulnerability.
Versions before 0.032 contain HarfBuzz 8.4.0 or earlier bundled as hb_src.tar.gz in the source tarball, which is affected by CVE-2026-22693.
References
Configurations
No configuration.
History
No history.
Information
Published : 2026-01-19 04:15
Updated : 2026-01-26 15:05
NVD link : CVE-2026-0943
Mitre link : CVE-2026-0943
CVE.ORG link : CVE-2026-0943
JSON object : View
Products Affected
No product.
CWE
No CWE.
