The following vulnerability was published for harfbuzz.
CVE-2024-56732[0]:
| HarfBuzz is a text shaping engine. Starting with 8.5.0 through
| 10.0.1, there is a heap-based buffer overflow in the
| hb_cairo_glyphs_from_buffer function.
If you fix the vulnerability please also make sure to include the
CVE (Common Vulnerabilities & Exposures) id in your changelog entry.