CVE-2022-29777

Onlyoffice Document Server v6.0.0 and below and Core 6.1.0.26 and below were discovered to contain a heap overflow via the component DesktopEditor/fontengine/fontconverter/FontFileBase.h.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:onlyoffice:core:*:*:*:*:*:*:*:*
cpe:2.3:a:onlyoffice:document_server:*:*:*:*:*:*:*:*

Information

Published : 2022-06-02 14:15

Updated : 2022-06-24 15:15


NVD link : CVE-2022-29777

Mitre link : CVE-2022-29777


JSON object : View

Products Affected

onlyoffice

  • core
  • document_server
CWE
CWE-787

Out-of-bounds Write