A vulnerability has been found in FreeType 2.8.1 and classified as problematic. This vulnerability affects the function
cf2_doFlex
of the file cff/cf2intrp.c. The manipulation leads to integer overflow.
This vulnerability was named CVE-2025-23022. Attacking locally is a requirement. There is no exploit available.