An issue was discovered in tc-lib-pdf-font before 2.6.4, as used in TCPDF before 6.8.0 and other products. Fonts are mishandled, e.g., FontBBox for Type 1 and TrueType fonts is misparsed.
                
            Metrics
Affected Vendors & Products
References
        History
                    Thu, 24 Jul 2025 21:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Tecnick Tecnick tcpdf | |
| Vendors & Products | Tecnick Tecnick tcpdf | 
Thu, 02 Jan 2025 20:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | cvssV3_1 
 
 | 
Fri, 27 Dec 2024 04:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | An issue was discovered in tc-lib-pdf-font before 2.6.4, as used in TCPDF before 6.8.0 and other products. Fonts are mishandled, e.g., FontBBox for Type 1 and TrueType fonts is misparsed. | |
| References |  | 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: mitre
Published: 2024-12-27T00:00:00
Updated: 2025-01-02T19:34:06.727Z
Reserved: 2024-12-27T00:00:00
Link: CVE-2024-56520
 Vulnrichment
                        Vulnrichment
                    Updated: 2025-01-02T19:33:58.765Z
 NVD
                        NVD
                    Status : Awaiting Analysis
Published: 2024-12-27T05:15:07.837
Modified: 2025-01-02T20:16:07.280
Link: CVE-2024-56520
 Redhat
                        Redhat
                    No data.