← Vulnerability feed

Vulnerability record · CVE-2020-25690 · published 23 February 2021

CVE-2020-25690: Fontforge memory buffer overflow vulnerability

Fontforge · Fontforge

An out-of-bounds write flaw was found in FontForge in versions before 20200314 while parsing SFD files containing certain LayerCount tokens. This flaw allows an attacker to manipulate the memory allocated on the heap, causing the application to crash or execute arbitrary code. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

8.8 CVSS 3.1 High EPSS 1.3% · top 29.7% CWE-119 · Memory buffer overflow
8.8CVSS 3.1 base score, v2 6.8
1.3%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
2References
17 Jun 2026Last modified by NVD

Description

An out-of-bounds write flaw was found in FontForge in versions before 20200314 while parsing SFD files containing certain LayerCount tokens. This flaw allows an attacker to manipulate the memory allocated on the heap, causing the application to crash or execute arbitrary code. The highest threat from this vulnerability is to confidentiality, integrity, as well as system availability.

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
https://bugzilla.redhat.com/show_bug.cgi?id=1893188 Issue TrackingPatchThird Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=1893188 Issue TrackingPatchThird Party Advisory

Track CVE-2020-25690 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2019-15785Fontforge memory buffer overflow vulnerabilityFontForge 20190813 through 20190820 has a buffer overflow in PrefsUI_LoadPrefs in prefs.c.EPSS 2.7%8.8CVE-2025-15280Fontforge use after free vulnerabilityFontForge SFD File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code o…EPSS 0.61%8.8CVE-2025-15271Fontforge vulnerabilityFontForge SFD File Parsing Improper Validation of Array Index Remote Code Execution Vulnerability. This vulnerability allows remote attackers to exec…EPSS 0.61%8.8CVE-2025-15272Fontforge heap-based buffer overflow vulnerabilityFontForge SFD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbi…EPSS 0.61%8.8CVE-2025-15273Fontforge stack-based buffer overflow vulnerabilityFontForge PFB File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arb…EPSS 0.61%8.8CVE-2025-15274Fontforge heap-based buffer overflow vulnerabilityFontForge SFD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbi…EPSS 0.61%8.8CVE-2025-15275Fontforge heap-based buffer overflow vulnerabilityFontForge SFD File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbi…EPSS 0.61%8.8CVE-2025-15269Fontforge use after free vulnerabilityFontForge SFD File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code o…EPSS 0.53%

Source: NIST National Vulnerability Database (record CVE-2020-25690), CISA KEV, FIRST EPSS (scores of 2026-09-29). This page is refreshed as NVD updates the record.