https://bugzilla.redhat.com/show_bug.cgi?id=2402600
Bug ID: 2402600
Summary: google-roboto-fonts-3.013 is available
Product: Fedora
Version: rawhide
Status: NEW
Component: google-roboto-fonts
Keywords: FutureFeature, Triaged
Assignee: dtardon(a)redhat.com
Reporter: upstream-release-monitoring(a)fedoraproject.org
QA Contact: extras-qa(a)fedoraproject.org
CC: davide(a)cavalca.name, dtardon(a)redhat.com,
epel-packagers-sig(a)lists.fedoraproject.org,
fonts-bugs(a)lists.fedoraproject.org,
i18n-bugs(a)lists.fedoraproject.org
Target Milestone: ---
Classification: Fedora
Releases retrieved: 3.000, 3.001, 3.002, 3.003, 3.004, 3.005, 3.006, 3.007,
3.008, 3.009, 3.010, 3.011, 3.012, 3.013
Upstream release that is considered latest: 3.013
Current version/release in rawhide: 2.138-20.fc43
URL: https://github.com/googlefonts/roboto-3-classic
Please consult the package updates policy before you issue an update to a
stable branch: https://docs.fedoraproject.org/en-US/fesco/Updates_Policy/
More information about the service that created this bug can be found at:
https://docs.fedoraproject.org/en-US/package-maintainers/Upstream_Release_M…
Please keep in mind that with any upstream change, there may also be packaging
changes that need to be made. Specifically, please remember that it is your
responsibility to review the new version to ensure that the licensing is still
correct and that no non-free or legally problematic items have been added
upstream.
Based on the information from Anitya:
https://release-monitoring.org/project/12041/
To change the monitoring settings for the project, please visit:
https://src.fedoraproject.org/rpms/google-roboto-fonts
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2402600
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…
https://bugzilla.redhat.com/show_bug.cgi?id=2131516
--- Comment #21 from Akira TAGOH <tagoh(a)redhat.com> ---
(In reply to Mike FABIAN from comment #19)
> Created attachment 2144983 [details]
> Screenshot using the new test file in gedit which shows the problem on
> Fedora 44 and rawhide
>
> Screenshot showing that the problem still exists in rawhide when displaying
> the new test file with gedit.
>
> Same on Fedora 44.
AFAIK That blue and black cursors typically happens when Pango can't determine
the text direction.
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2131516
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…
https://bugzilla.redhat.com/show_bug.cgi?id=2488354
Bug ID: 2488354
Summary: fonttools fails to build with Python 3.15:
AttributeError: module 'glob' has no attribute
'glob1'. Did you mean '.glob' instead of '.glob1'?
Product: Fedora
Version: rawhide
Status: NEW
Component: fonttools
Assignee: pnemade(a)redhat.com
Reporter: ksurma(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: fonts-bugs(a)lists.fedoraproject.org,
pnemade(a)redhat.com, tagoh(a)redhat.com
Blocks: 2412434 (PYTHON3.15), 2433833 (F45FTBFS,RAWHIDEFTBFS)
Target Milestone: ---
Classification: Fedora
fonttools fails to build with Python 3.15.0b2.
5 tests fail with the same traceback:
________________________ ERROR at setup of test_init_py
________________________
@pytest.fixture(scope="module")
def table_modules():
> return get_table_modules()
^^^^^^^^^^^^^^^^^^^
Tests/metaTools/check_table_coverage_test.py:27:
_ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _ _
def get_table_modules() -> list[tuple[str, str]]:
"""Return sorted list of (module_name, tag_raw) for all table .py
files."""
modules = []
> for filename in glob.glob1(TABLES_DIR, "*.py"):
^^^^^^^^^^
E AttributeError: module 'glob' has no attribute 'glob1'. Did you mean
'.glob' instead of '.glob1'?
MetaTools/check_table_coverage.py:144: AttributeError
https://docs.python.org/3.15/whatsnew/3.15.html
For our attempts to build fonttools with Python 3.15, see:
https://koji.fedoraproject.org/koji/search?terms=fonttools&type=package&mat…
Let us know here if you have any questions.
Python 3.15 is planned to be included in Fedora 45.
To make that update smoother, we're building Fedora packages with all
pre-releases of Python 3.15.
A build failure prevents us from testing all dependent packages (transitive
[Build]Requires),
so if this package is required a lot, it's important for us to get it fixed
soon.
We'd appreciate help from the people who know this package best,
but if you don't want to work on this now, let us know so we can try to work
around it on our side.
Referenced Bugs:
https://bugzilla.redhat.com/show_bug.cgi?id=2412434
[Bug 2412434] Python 3.15
https://bugzilla.redhat.com/show_bug.cgi?id=2433833
[Bug 2433833] Fedora 45 FTBFS Tracker
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2488354
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…
https://bugzilla.redhat.com/show_bug.cgi?id=2426599
Bug ID: 2426599
Summary: CVE-2025-15280 fontforge: FontForge SFD File Parsing
Use-After-Free Remote Code Execution Vulnerability
[fedora-42]
Product: Fedora
Version: 42
Status: NEW
Whiteboard: {"flaws": ["c0cde29b-bf92-4976-8812-3fb3bd0613c5"]}
Component: fontforge
Keywords: Security, SecurityTracking
Severity: high
Priority: high
Assignee: pnemade(a)redhat.com
Reporter: saroy(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: fonts-bugs(a)lists.fedoraproject.org, kevin(a)scrye.com,
pnemade(a)redhat.com
Blocks: 2426430
Target Milestone: ---
Classification: Fedora
Disclaimer: Community trackers are created by Red Hat Product Security team on
a best effort basis. Package maintainers are required to ascertain if the flaw
indeed affects their package, before starting the update process.
The following link provides references to all essential vulnerability
management information. If something is wrong or missing, please contact a
member of PSIRT.
https://spaces.redhat.com/display/PRODSEC/Vulnerability+Management+-+Essent…
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2426599
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…
https://bugzilla.redhat.com/show_bug.cgi?id=2426595
Bug ID: 2426595
Summary: CVE-2025-15276 fontforge: FontForge SFD File Parsing
Deserialization of Untrusted Data Remote Code
Execution Vulnerability [fedora-42]
Product: Fedora
Version: 42
Status: NEW
Whiteboard: {"flaws": ["1d848b82-6cec-4ac8-a4e4-280ad45c7ad7"]}
Component: fontforge
Keywords: Security, SecurityTracking
Severity: high
Priority: high
Assignee: pnemade(a)redhat.com
Reporter: saroy(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: fonts-bugs(a)lists.fedoraproject.org, kevin(a)scrye.com,
pnemade(a)redhat.com
Blocks: 2426424
Target Milestone: ---
Classification: Fedora
Disclaimer: Community trackers are created by Red Hat Product Security team on
a best effort basis. Package maintainers are required to ascertain if the flaw
indeed affects their package, before starting the update process.
The following link provides references to all essential vulnerability
management information. If something is wrong or missing, please contact a
member of PSIRT.
https://spaces.redhat.com/display/PRODSEC/Vulnerability+Management+-+Essent…
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2426595
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…
https://bugzilla.redhat.com/show_bug.cgi?id=2426592
Bug ID: 2426592
Summary: CVE-2025-15278 fontforge: FontForge GUtils XBM File
Parsing Integer Overflow Remote Code Execution
Vulnerability [fedora-42]
Product: Fedora
Version: 42
Status: NEW
Whiteboard: {"flaws": ["4b0e37b3-aee4-492b-a36a-853ead6f8450"]}
Component: fontforge
Keywords: Security, SecurityTracking
Severity: high
Priority: high
Assignee: pnemade(a)redhat.com
Reporter: saroy(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: fonts-bugs(a)lists.fedoraproject.org, kevin(a)scrye.com,
pnemade(a)redhat.com
Blocks: 2426433
Target Milestone: ---
Classification: Fedora
Disclaimer: Community trackers are created by Red Hat Product Security team on
a best effort basis. Package maintainers are required to ascertain if the flaw
indeed affects their package, before starting the update process.
The following link provides references to all essential vulnerability
management information. If something is wrong or missing, please contact a
member of PSIRT.
https://spaces.redhat.com/display/PRODSEC/Vulnerability+Management+-+Essent…
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2426592
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…
https://bugzilla.redhat.com/show_bug.cgi?id=2426590
Bug ID: 2426590
Summary: CVE-2025-15277 fontforge: FontForge GUtils SGI File
Parsing Heap-based Buffer Overflow Remote Code
Execution Vulnerability [fedora-42]
Product: Fedora
Version: 42
Status: NEW
Whiteboard: {"flaws": ["735578d0-49ef-47a9-81a8-722f6674848e"]}
Component: fontforge
Keywords: Security, SecurityTracking
Severity: high
Priority: high
Assignee: pnemade(a)redhat.com
Reporter: saroy(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: fonts-bugs(a)lists.fedoraproject.org, kevin(a)scrye.com,
pnemade(a)redhat.com
Blocks: 2426425
Target Milestone: ---
Classification: Fedora
Disclaimer: Community trackers are created by Red Hat Product Security team on
a best effort basis. Package maintainers are required to ascertain if the flaw
indeed affects their package, before starting the update process.
The following link provides references to all essential vulnerability
management information. If something is wrong or missing, please contact a
member of PSIRT.
https://spaces.redhat.com/display/PRODSEC/Vulnerability+Management+-+Essent…
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2426590
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…
https://bugzilla.redhat.com/show_bug.cgi?id=2426586
Bug ID: 2426586
Summary: CVE-2025-15274 fontforge: FontForge SFD File Parsing
Heap-based Buffer Overflow Remote Code Execution
Vulnerability [fedora-42]
Product: Fedora
Version: 42
Status: NEW
Whiteboard: {"flaws": ["6374512d-39d2-44ca-960c-5fa0950ba189"]}
Component: fontforge
Keywords: Security, SecurityTracking
Severity: high
Priority: high
Assignee: pnemade(a)redhat.com
Reporter: saroy(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: fonts-bugs(a)lists.fedoraproject.org, kevin(a)scrye.com,
pnemade(a)redhat.com
Blocks: 2426435
Target Milestone: ---
Classification: Fedora
Disclaimer: Community trackers are created by Red Hat Product Security team on
a best effort basis. Package maintainers are required to ascertain if the flaw
indeed affects their package, before starting the update process.
The following link provides references to all essential vulnerability
management information. If something is wrong or missing, please contact a
member of PSIRT.
https://spaces.redhat.com/display/PRODSEC/Vulnerability+Management+-+Essent…
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2426586
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…
https://bugzilla.redhat.com/show_bug.cgi?id=2426584
Bug ID: 2426584
Summary: CVE-2025-15273 fontforge: FontForge PFB File Parsing
Stack-based Buffer Overflow Remote Code Execution
Vulnerability [fedora-42]
Product: Fedora
Version: 42
Status: NEW
Whiteboard: {"flaws": ["217f5fcc-cf4a-4f3e-b707-e9d285e674be"]}
Component: fontforge
Keywords: Security, SecurityTracking
Severity: high
Priority: high
Assignee: pnemade(a)redhat.com
Reporter: saroy(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: fonts-bugs(a)lists.fedoraproject.org, kevin(a)scrye.com,
pnemade(a)redhat.com
Blocks: 2426428
Target Milestone: ---
Classification: Fedora
Disclaimer: Community trackers are created by Red Hat Product Security team on
a best effort basis. Package maintainers are required to ascertain if the flaw
indeed affects their package, before starting the update process.
The following link provides references to all essential vulnerability
management information. If something is wrong or missing, please contact a
member of PSIRT.
https://spaces.redhat.com/display/PRODSEC/Vulnerability+Management+-+Essent…
--
You are receiving this mail because:
You are on the CC list for the bug.
https://bugzilla.redhat.com/show_bug.cgi?id=2426584
Report this comment as SPAM: https://bugzilla.redhat.com/enter_bug.cgi?product=Bugzilla&format=report-sp…