[Bug 2077991] CVE-2022-27405 FreeType: Segementation Fault
by bugzilla@redhat.com
https://bugzilla.redhat.com/show_bug.cgi?id=2077991
amctagga(a)redhat.com changed:
What |Removed |Added
----------------------------------------------------------------------------
CC| |ajax(a)redhat.com,
| |caillon+fedoraproject@gmail
| |.com,
| |erik-fedora(a)vanpienbroek.nl
| |,
| |fonts-bugs(a)lists.fedoraproj
| |ect.org,
| |gnome-sig(a)lists.fedoraproje
| |ct.org,
| |manisandro(a)gmail.com,
| |mclasen(a)redhat.com,
| |mkasik(a)redhat.com,
| |rh-spice-bugs(a)redhat.com,
| |rhughes(a)redhat.com,
| |rjones(a)redhat.com,
| |rstrode(a)redhat.com,
| |sandmann(a)redhat.com
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2077991
2 years
[Bug 2077989] CVE-2022-27404 FreeType: Buffer Overflow
by bugzilla@redhat.com
https://bugzilla.redhat.com/show_bug.cgi?id=2077989
amctagga(a)redhat.com changed:
What |Removed |Added
----------------------------------------------------------------------------
CC| |ajax(a)redhat.com,
| |caillon+fedoraproject@gmail
| |.com,
| |erik-fedora(a)vanpienbroek.nl
| |,
| |fonts-bugs(a)lists.fedoraproj
| |ect.org,
| |gnome-sig(a)lists.fedoraproje
| |ct.org,
| |manisandro(a)gmail.com,
| |mclasen(a)redhat.com,
| |mkasik(a)redhat.com,
| |rh-spice-bugs(a)redhat.com,
| |rhughes(a)redhat.com,
| |rjones(a)redhat.com,
| |rstrode(a)redhat.com,
| |sandmann(a)redhat.com
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2077989
2 years
[Bug 2077985] CVE-2022-27406 Freetype: Segmentation violation
by bugzilla@redhat.com
https://bugzilla.redhat.com/show_bug.cgi?id=2077985
amctagga(a)redhat.com changed:
What |Removed |Added
----------------------------------------------------------------------------
CC| |ajax(a)redhat.com,
| |caillon+fedoraproject@gmail
| |.com,
| |erik-fedora(a)vanpienbroek.nl
| |,
| |fonts-bugs(a)lists.fedoraproj
| |ect.org,
| |gnome-sig(a)lists.fedoraproje
| |ct.org,
| |manisandro(a)gmail.com,
| |mclasen(a)redhat.com,
| |mkasik(a)redhat.com,
| |rh-spice-bugs(a)redhat.com,
| |rhughes(a)redhat.com,
| |rjones(a)redhat.com,
| |rstrode(a)redhat.com,
| |sandmann(a)redhat.com
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2077985
2 years
[Bug 2021366] New: Nimbus Mono PS font should not fc-match Courier,
as certain letter combinations are not monospaced
by bugzilla@redhat.com
https://bugzilla.redhat.com/show_bug.cgi?id=2021366
Bug ID: 2021366
Summary: Nimbus Mono PS font should not fc-match Courier, as
certain letter combinations are not monospaced
Product: Fedora
Version: 35
Hardware: x86_64
OS: Linux
Status: NEW
Component: Fonts
Assignee: i18n-bugs(a)lists.fedoraproject.org
Reporter: info(a)skierpage.com
QA Contact: fonts-bugs(a)lists.fedoraproject.org
Target Milestone: ---
Classification: Fedora
Created attachment 1840789
--> https://bugzilla.redhat.com/attachment.cgi?id=1840789&action=edit
look at "affiliation"
Description of problem:
I visited https://schema.org/Person in Firefox in Fedora 35 KDE spin and
noticed the monospace text "affiliation" was not monospaced; the letters "ffi"
were on top of each other as if replaced by the ligature ffi.
The page CSS is styling the <code> tag "font-family: Courier, monospace;", and
in Fedora 35 KDE Spin `fc-match Courier` returns
NimbusMonoPS-Regular.otf: "Nimbus Mono PS" "Regular"
indeed, if I set font-family to "Nimbus Mono PS" in some simple HTML
https://www.skierpage.com/bugs/nimbusmono_not_monospaced.html , other ff
combinations are also "ligature-ized".
I tried these two URLs in the chromium-browser package and in the Epiphany and
Konqueror browser flatpaks. These did not use "Nimbus Mono PS" as the fallback
font for font-family "Courier" so did not display "affiliation" badly on the
Person web page, but if you specify font-family "Nimbus Mono PS", you get the
ligature.
Version-Release number of selected component (if applicable):
Mozilla Firefox 94.0
urw-base35-fonts-20200910-9.fc35.src.rpm
How reproducible:
Always.
Steps to Reproduce:
1. Visit https://schema.org/Person and
https://www.skierpage.com/bugs/nimbusmono_not_monospaced.html in Firefox and
other browsers.
2. Note how "ffi" appears.
Actual results:
Firefox uses "Nimbus Mono PS" as the fallback for font-family Courier; all
these browsers replace "ffi" and such with the ligature character in "Nimbus
Mono PS", destroying the desired monospace effect.
Expected results:
Monospaced fonts should appear... monospaced, so every character should occupy
the same amount of horizontal space. However, if a font provides ligature
glyphs for "ffi" and such, then it's unclear if it's wrong for the browser to
use them; (l33t developers now explicitly use monospaced coding fonts that do
wacky substitutions.)
So the fix could be for Firefox and/or fc-match to _not_ use Nimbus Mono PS
when text handling requests Courier. The other browsers on my system don't,
I'm not sure why. Another could be to remove the ligatures from Nimbus Mono PS.
Additional info:
The rendering of code on that page (see attachment) is pretty terrible, note
the oversized 'd's in "address". Another reason to have Courier match some
other monospaced font than Nimbus Mono PS.
You can use the Fontmatrix program to enable OpenType features; checking latn >
dflt > liga changes the display of "ff" combinations.
Firefox using ligatures in monospaced fonts is
https://bugzilla.mozilla.org/show_bug.cgi?id=384395 , was closed WONTFIX "We
can't really do anything about it -- the underlying text system is doing the
ligaturization, not us".
ArchLinux users discussed the problem in
https://bbs.archlinux.org/viewtopic.php?id=238832
--
You are receiving this mail because:
You are the QA Contact for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2021366
2 years
[Bug 1641503] sil-andika-fonts-6.101 is available
by bugzilla@redhat.com
https://bugzilla.redhat.com/show_bug.cgi?id=1641503
Fedora Update System <updates(a)fedoraproject.org> changed:
What |Removed |Added
----------------------------------------------------------------------------
Resolution|--- |ERRATA
Fixed In Version| |sil-andika-fonts-6.101-1.fc
| |37
Status|MODIFIED |CLOSED
Last Closed| |2022-04-07 10:07:41
--- Comment #11 from Fedora Update System <updates(a)fedoraproject.org> ---
FEDORA-2022-b0e6b9764d has been pushed to the Fedora 37 stable repository.
If problem still persists, please make note of it in this bug report.
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=1641503
2 years, 1 month
[Bug 2045012] New: Split the Cantarell fonts into 2 for VF and
non-variable fonts
by bugzilla@redhat.com
https://bugzilla.redhat.com/show_bug.cgi?id=2045012
Bug ID: 2045012
Summary: Split the Cantarell fonts into 2 for VF and
non-variable fonts
Product: Fedora
Version: rawhide
Status: NEW
Component: abattis-cantarell-fonts
Assignee: klember(a)redhat.com
Reporter: petersen(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: cosimo.cecchi(a)gmail.com,
fonts-bugs(a)lists.fedoraproject.org,
klember(a)redhat.com, me(a)fale.io, tagoh(a)redhat.com
Target Milestone: ---
Classification: Fedora
Description of problem:
Matthias Clasen pointed out that abattis-cantarell-fonts currently
includes both variable and non-variable fonts.
This duplication makes it harder for pango to choose the right font for
example.
We should split the binary package into two and only install the VF one by
default.
Version-Release number of selected component (if applicable):
abattis-cantarell-fonts-0.301-6
Steps to Reproduce:
1. rpm -ql abattis-cantarell-fonts
Actual results:
Contains both fixed and variable fonts
Expected results:
Probably Cantarell-VF.otf should be moved to abattis-cantarell-vf-fonts
subpackage
and made the default.
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2045012
2 years, 1 month