A vulnerability was found in GNU Emacs. It has been declared as critical. Affected is the function sfnt_read_name_table of the file src/sfnt.c of the component Font Handler. Such manipulation leads to integer overflow.

This vulnerability is documented as CVE-2026-71393. The attack can be executed remotely. There is not any exploit available.

A patch should be applied to remediate this issue.