Microsoft DirectWrite / AFDKO suffers from a heap-based buffer overflow vulnerability in OpenType font handling in readEncoding.

MD5 | 7893bbd664f437470b182e7954cb25b0