Loading
stb stb_truetype.h through 1.22 has a heap-based buffer over-read in stbtt__buf_get8.
Use CWE-125, Nothings vendor hub and Stb Truetype.H product page to widen CVE-2020-6620 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2020-6623, CVE-2020-6622 and CVE-2020-6621 for nearby disclosures in the same product family.