BMC Smart Reporting version 7.3 20180418 suffers from an XML external entity injection vulnerability.
6536109e0769a8776234090cb04b9f1ec1423d5b3cba0b53476bf8dd5cbe1c28
Microsoft DirectWrite / AFDKO suffers from a heap-based out-of-bounds read/write vulnerability in OpenType font handling due to unbounded iFD.
e74d7eca66fac35dabca0f0b4ab4a2d55f72889c670a0b7f8bf2ff79eed66baa