The Pcf2bdf Project maintains a specialized font-conversion utility that translates PCF (Portable Compiled Font) files to BDF (Bitmap Distribution Format), a tool found in embedded systems and legacy rendering environments where its narrow scope belies notable deployment in graphics and font-processing pipelines. The recurring vulnerability surface reflects input-parsing demands, centering on improper validation of input quantities and out-of-bounds write conditions that arise from the binary font-format handling required by the conversion process. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Pcf2bdf Project over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2022-23318HIGH A heap-buffer-overflow in pcf2bdf, versions >= 1.05 allows an attacker to trigger unsafe memory access via a specially crafted PCF font file. This out-of-bound read may lead to an | Feb 17, 2022 | 7.1 | 24 | NO | NO |
CVE-2022-23319MEDIUM A segmentation fault during PCF file parsing in pcf2bdf versions >=1.05 allows an attacker to trigger a program crash via a specially crafted PCF font file. This crash affects the | Feb 17, 2022 | 5.5 | 20 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Pcf2bdf Project.
Media articles that mention a CVE ID that affects a product developed by Pcf2bdf Project — matched by CVE ID, not by vendor name.