GHSA-c55g-rp4x-fx84
### Impact The spritefont reader can be induced to perform a 32-bit overflow multiply that could in theory result in a RCE. This impacts the use of the *DirectX Tool Kit* **SpriteFont** class file loading ctor if given untrusted data files. > Note this only applies to x86/ARM builds of the library. ARM64 and x64 native is not subject to this issue. ### Patches This bug has been fixed in the May 7, 2026 release. Alternatively, users can update their copy of the reader as per [this commit](https://github.com/microsoft/DirectXTK/commit/ef1bd5d7f492c39dd0cd87493ba8ea38725c9791). ### Workarounds This does not apply if a project's .spritefont files are all 'trusted' data that were included with an application. It's primarily an issue only if developers are using user-provided or network downloaded spritefont files.
Properties
- ghsa_id
- GHSA-c55g-rp4x-fx84
- severity
- medium
- summary
- Microsoft DirectX: .spritefont multiply overflow only in 32-bit builds
- cve_id
- GHSA-c55g-rp4x-fx84
- is_ghsa_only
- true
- ghsa_published
- 2026-05-18T15:38:15Z
- source_url
- https://github.com/advisories/GHSA-c55g-rp4x-fx84
- ghsa_updated
- 2026-05-18T15:38:16Z
Related Entities (6)
REPORTED_BY (1)
VULNERABLE_TO (2)
AFFECTS (2)
HAS_WEAKNESS (1)
Explore deeper with Ninja Signal's threat intelligence graph