[Bug 429131] New: CVE-2008-0006 Xorg / XFree86 PCF font parser buffer overflow [Fedora 7]
by Red Hat Bugzilla
Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug report.
https://bugzilla.redhat.com/show_bug.cgi?id=429131
Summary: CVE-2008-0006 Xorg / XFree86 PCF font parser buffer
overflow [Fedora 7]
Product: Fedora
Version: 7
Platform: All
URL: http://fedoraproject.org/wiki/Security/TrackingBugs
OS/Version: Linux
Status: NEW
Severity: medium
Priority: medium
Component: libXfont
AssignedTo: sandmann(a)redhat.com
ReportedBy: thoger(a)redhat.com
QAContact: extras-qa(a)fedoraproject.org
CC: fedora-fonts-bugs-list(a)redhat.com
This is an automatically created tracking bug! It was created to ensure that one or more security vulnerabilities are fixed in all affected branches.
You should *not* refer to this bug publicly, as it is a private "Fedora Project Contributors" bug.
For comments that are specific to the vulnerability please use bugs filed against "Security Response" product referenced in "Blocks" field.
bug #428044: CVE-2008-0006 Xorg / XFree86 PCF font parser buffer overflow
When creating an update for the version this this bug is reported against please include the bug IDs of respective bugs filed against "Security Response" product as well as of this bug and let the update system close them. Please note that the update announcement will (and should) contain only references to "Security Response" bugs as long as the tracking bug is restricted to "Fedora Project Contributors".
For more information see: http://fedoraproject.org/wiki/Security/TrackingBugs
--
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug, or are watching someone who is.
16 years, 3 months
[Bug 429132] New: CVE-2008-0006 Xorg / XFree86 PCF font parser buffer overflow [Fedora 8]
by Red Hat Bugzilla
Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug report.
https://bugzilla.redhat.com/show_bug.cgi?id=429132
Summary: CVE-2008-0006 Xorg / XFree86 PCF font parser buffer
overflow [Fedora 8]
Product: Fedora
Version: 8
Platform: All
URL: http://fedoraproject.org/wiki/Security/TrackingBugs
OS/Version: Linux
Status: NEW
Severity: medium
Priority: medium
Component: libXfont
AssignedTo: sandmann(a)redhat.com
ReportedBy: thoger(a)redhat.com
QAContact: extras-qa(a)fedoraproject.org
CC: fedora-fonts-bugs-list(a)redhat.com
This is an automatically created tracking bug! It was created to ensure that one or more security vulnerabilities are fixed in all affected branches.
You should *not* refer to this bug publicly, as it is a private "Fedora Project Contributors" bug.
For comments that are specific to the vulnerability please use bugs filed against "Security Response" product referenced in "Blocks" field.
bug #428044: CVE-2008-0006 Xorg / XFree86 PCF font parser buffer overflow
When creating an update for the version this this bug is reported against please include the bug IDs of respective bugs filed against "Security Response" product as well as of this bug and let the update system close them. Please note that the update announcement will (and should) contain only references to "Security Response" bugs as long as the tracking bug is restricted to "Fedora Project Contributors".
For more information see: http://fedoraproject.org/wiki/Security/TrackingBugs
--
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug, or are watching someone who is.
16 years, 3 months
rpms/samyak-fonts/F-8 samyak-fonts.spec,NONE,1.1 sources,1.1,1.2
by Pravin Satpute
Author: pravins
Update of /cvs/pkgs/rpms/samyak-fonts/F-8
In directory cvs-int.fedora.redhat.com:/tmp/cvs-serv5025
Modified Files:
sources
Added Files:
samyak-fonts.spec
Log Message:
* Fri Jan 18 2008 Pravin Satpute <psatpute(a)redhat.com> - 1.1.0-1
- initial packaging
--- NEW FILE samyak-fonts.spec ---
%define fontname samyak
%define fontdir %{_datadir}/fonts/%{fontname}
Name: %{fontname}-fonts
Version: 1.1.0
Release: 1%{?dist}
License: GPLv2
Source: %{fontname}-fonts-%{version}.tar.gz
BuildRoot: %{_tmppath}/%{name}-%{version}-%{release}-root-%(%{__id_u} -n)
BuildArch: noarch
BuildRequires : dos2unix
Group: User Interface/X
Summary: Samyak Font for Indic Script
URL: https://sarovar.org/projects/samyak/
%description
The Samyak package contains fonts for the display of
Scripts Devanagari, Gujarati, Malayalam, Oriya and Tamil
%prep
%setup -q
find . -not -name \*.ttf -type f -exec dos2unix -k {} \;
%build
echo "Nothing to do in Build."
%install
rm -rf %{buildroot}
install -m 0755 -d %{buildroot}%{fontdir}
install -m 0644 -p devanagari/*.ttf %{buildroot}%{fontdir}
install -m 0644 -p malayalam/*.ttf %{buildroot}%{fontdir}
install -m 0644 -p oriya/*.ttf %{buildroot}%{fontdir}
install -m 0644 -p tamil/*.ttf %{buildroot}%{fontdir}
install -m 0644 -p gujarati/*.ttf %{buildroot}%{fontdir}
%clean
rm -rf %{buildroot}
%post
if [ -x %{_bindir}/fc-cache ]; then
%{_bindir}/fc-cache %{fontdir} || :
fi
%postun
if [ "$1" = "0" ]; then
if [ -x %{_bindir}/fc-cache ]; then
%{_bindir}/fc-cache %{fontdir} || :
fi
fi
%files
%defattr(-,root,root,-)
%dir %{fontdir}
%{fontdir}/*.ttf
%changelog
* Fri Jan 18 2008 Pravin Satpute <psatpute(a)redhat.com> - 1.1.0-1
- initial packaging
Index: sources
===================================================================
RCS file: /cvs/pkgs/rpms/samyak-fonts/F-8/sources,v
retrieving revision 1.1
retrieving revision 1.2
diff -u -r1.1 -r1.2
--- sources 21 Jan 2008 08:56:31 -0000 1.1
+++ sources 21 Jan 2008 09:34:56 -0000 1.2
@@ -0,0 +1 @@
+a887c7f255b13fb1ce0c8adad306a16b samyak-fonts-1.1.0.tar.gz
16 years, 3 months
rpms/samyak-fonts/devel samyak-fonts.spec, NONE, 1.1 .cvsignore, 1.1, 1.2 sources, 1.1, 1.2
by Pravin Satpute
Author: pravins
Update of /cvs/pkgs/rpms/samyak-fonts/devel
In directory cvs-int.fedora.redhat.com:/tmp/cvs-serv4801/devel
Modified Files:
.cvsignore sources
Added Files:
samyak-fonts.spec
Log Message:
* Fri Jan 18 2008 Pravin Satpute <psatpute(a)redhat.com> - 1.1.0-1
- initial packaging
--- NEW FILE samyak-fonts.spec ---
%define fontname samyak
%define fontdir %{_datadir}/fonts/%{fontname}
Name: %{fontname}-fonts
Version: 1.1.0
Release: 1%{?dist}
License: GPLv2
Source: %{fontname}-fonts-%{version}.tar.gz
BuildRoot: %{_tmppath}/%{name}-%{version}-%{release}-root-%(%{__id_u} -n)
BuildArch: noarch
BuildRequires : dos2unix
Group: User Interface/X
Summary: Samyak Font for Indic Script
URL: https://sarovar.org/projects/samyak/
%description
The Samyak package contains fonts for the display of
Scripts Devanagari, Gujarati, Malayalam, Oriya and Tamil
%prep
%setup -q
find . -not -name \*.ttf -type f -exec dos2unix -k {} \;
%build
echo "Nothing to do in Build."
%install
rm -rf %{buildroot}
install -m 0755 -d %{buildroot}%{fontdir}
install -m 0644 -p devanagari/*.ttf %{buildroot}%{fontdir}
install -m 0644 -p malayalam/*.ttf %{buildroot}%{fontdir}
install -m 0644 -p oriya/*.ttf %{buildroot}%{fontdir}
install -m 0644 -p tamil/*.ttf %{buildroot}%{fontdir}
install -m 0644 -p gujarati/*.ttf %{buildroot}%{fontdir}
%clean
rm -rf %{buildroot}
%post
if [ -x %{_bindir}/fc-cache ]; then
%{_bindir}/fc-cache %{fontdir} || :
fi
%postun
if [ "$1" = "0" ]; then
if [ -x %{_bindir}/fc-cache ]; then
%{_bindir}/fc-cache %{fontdir} || :
fi
fi
%files
%defattr(-,root,root,-)
%dir %{fontdir}
%{fontdir}/*.ttf
%changelog
* Fri Jan 18 2008 Pravin Satpute <psatpute(a)redhat.com> - 1.1.0-1
- initial packaging
Index: .cvsignore
===================================================================
RCS file: /cvs/pkgs/rpms/samyak-fonts/devel/.cvsignore,v
retrieving revision 1.1
retrieving revision 1.2
diff -u -r1.1 -r1.2
--- .cvsignore 21 Jan 2008 08:56:31 -0000 1.1
+++ .cvsignore 21 Jan 2008 09:30:58 -0000 1.2
@@ -0,0 +1 @@
+samyak-fonts-1.1.0.tar.gz
Index: sources
===================================================================
RCS file: /cvs/pkgs/rpms/samyak-fonts/devel/sources,v
retrieving revision 1.1
retrieving revision 1.2
diff -u -r1.1 -r1.2
--- sources 21 Jan 2008 08:56:31 -0000 1.1
+++ sources 21 Jan 2008 09:30:58 -0000 1.2
@@ -0,0 +1 @@
+a887c7f255b13fb1ce0c8adad306a16b samyak-fonts-1.1.0.tar.gz
16 years, 3 months
rpms/samyak-fonts/devel .cvsignore, NONE, 1.1 Makefile, NONE, 1.1 sources, NONE, 1.1
by Jens Petersen
Author: petersen
Update of /cvs/extras/rpms/samyak-fonts/devel
In directory cvs-int.fedora.redhat.com:/home/fedora/petersen/admin/tmpcvsQ29179/rpms/samyak-fonts/devel
Added Files:
.cvsignore Makefile sources
Log Message:
Setup of module samyak-fonts
--- NEW FILE .cvsignore ---
--- NEW FILE Makefile ---
# Makefile for source rpm: samyak-fonts
# $Id: Makefile,v 1.1 2008/01/21 08:56:31 petersen Exp $
NAME := samyak-fonts
SPECFILE = $(firstword $(wildcard *.spec))
define find-makefile-common
for d in common ../common ../../common ; do if [ -f $$d/Makefile.common ] ; then if [ -f $$d/CVS/Root -a -w $$/Makefile.common ] ; then cd $$d ; cvs -Q update ; fi ; echo "$$d/Makefile.common" ; break ; fi ; done
endef
MAKEFILE_COMMON := $(shell $(find-makefile-common))
ifeq ($(MAKEFILE_COMMON),)
# attept a checkout
define checkout-makefile-common
test -f CVS/Root && { cvs -Q -d $$(cat CVS/Root) checkout common && echo "common/Makefile.common" ; } || { echo "ERROR: I can't figure out how to checkout the 'common' module." ; exit -1 ; } >&2
endef
MAKEFILE_COMMON := $(shell $(checkout-makefile-common))
endif
include $(MAKEFILE_COMMON)
--- NEW FILE sources ---
16 years, 3 months
rpms/samyak-fonts Makefile,NONE,1.1 import.log,NONE,1.1
by Jens Petersen
Author: petersen
Update of /cvs/extras/rpms/samyak-fonts
In directory cvs-int.fedora.redhat.com:/home/fedora/petersen/admin/tmpcvsQ29179/rpms/samyak-fonts
Added Files:
Makefile import.log
Log Message:
Setup of module samyak-fonts
--- NEW FILE Makefile ---
# Top level Makefile for module samyak-fonts
all : CVS/Root common-update
@cvs update
common-update : common
@cd common && cvs update
common : CVS/Root
@cvs checkout common
CVS/Root :
@echo "ERROR: This does not look like a CVS checkout" && exit 1
clean :
@find . -type f -name *~ -exec rm -fv {} \;
--- NEW FILE import.log ---
16 years, 3 months
rpms/samyak-fonts/devel - New directory
by Jens Petersen
Author: petersen
Update of /cvs/extras/rpms/samyak-fonts/devel
In directory cvs-int.fedora.redhat.com:/home/fedora/petersen/admin/tmpcvsQ29179/rpms/samyak-fonts/devel
Log Message:
Directory /cvs/extras/rpms/samyak-fonts/devel added to the repository
16 years, 3 months
rpms/samyak-fonts - New directory
by Jens Petersen
Author: petersen
Update of /cvs/extras/rpms/samyak-fonts
In directory cvs-int.fedora.redhat.com:/home/fedora/petersen/admin/tmpcvsQ29179/rpms/samyak-fonts
Log Message:
Directory /cvs/extras/rpms/samyak-fonts added to the repository
16 years, 3 months
[Bug 429133] New: CVE-2008-0006 Xorg / XFree86 PCF font parser buffer overflow [Fedora rawhide]
by Red Hat Bugzilla
Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug report.
https://bugzilla.redhat.com/show_bug.cgi?id=429133
Summary: CVE-2008-0006 Xorg / XFree86 PCF font parser buffer
overflow [Fedora rawhide]
Product: Fedora
Version: rawhide
Platform: All
URL: http://fedoraproject.org/wiki/Security/TrackingBugs
OS/Version: Linux
Status: NEW
Severity: medium
Priority: medium
Component: libXfont
AssignedTo: sandmann(a)redhat.com
ReportedBy: thoger(a)redhat.com
QAContact: extras-qa(a)fedoraproject.org
CC: fedora-fonts-bugs-list(a)redhat.com
This is an automatically created tracking bug! It was created to ensure that one or more security vulnerabilities are fixed in all affected branches.
You should *not* refer to this bug publicly, as it is a private "Fedora Project Contributors" bug.
For comments that are specific to the vulnerability please use bugs filed against "Security Response" product referenced in "Blocks" field.
bug #428044: CVE-2008-0006 Xorg / XFree86 PCF font parser buffer overflow
Please close this bug with RAWHIDE (referencing appropriate N-V-R in Fixed In field if possible) once is it fixed in devel branch. Do *not* include the bug id of this bug in the RPM changelog and the commit message.
For more information see: http://fedoraproject.org/wiki/Security/TrackingBugs
--
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug, or are watching someone who is.
16 years, 3 months