diff --git a/ChangeLog b/ChangeLog index 15ef4ae..fff4a41 100644 --- a/ChangeLog +++ b/ChangeLog @@ -1,5 +1,13 @@ 2018-01-27 Werner Lemberg <wl@gnu.org> + * src/truetype/ttinterp.c (Ins_GETVARIATION): Avoid NULL reference. + + Reported as + + https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=5736 + +2018-01-27 Werner Lemberg <wl@gnu.org> + * src/truetype/ttgxvar.c (tt_set_mm_blend): Minor. 2018-01-27 Werner Lemberg <wl@gnu.org> diff --git a/src/truetype/ttinterp.c b/src/truetype/ttinterp.c index d855aaa..551f14a 100644 --- a/src/truetype/ttinterp.c +++ b/src/truetype/ttinterp.c @@ -7532,8 +7532,16 @@ return; } - for ( i = 0; i < num_axes; i++ ) - args[i] = coords[i] >> 2; /* convert 16.16 to 2.14 format */ + if ( coords ) + { + for ( i = 0; i < num_axes; i++ ) + args[i] = coords[i] >> 2; /* convert 16.16 to 2.14 format */ + } + else + { + for ( i = 0; i < num_axes; i++ ) + args[i] = 0; + } }