[Bug 749174] CVE-2011-3256 FreeType FT_Bitmap_New integer overflow to buffer overflow, FreeType TT_Vary_Get_Glyph_Deltas improper input validation [fedora-all]

bugzilla at redhat.com bugzilla at redhat.com
Wed Oct 26 12:40:16 UTC 2011


Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug.


https://bugzilla.redhat.com/show_bug.cgi?id=749174

--- Comment #2 from Kevin Kofler <kevin at tigcc.ticalc.org> 2011-10-26 08:40:16 EDT ---
Marek Kašík has already issued builds for this:
* freetype-2.4.7-1.fc17 in Rawhide
* freetype-2.4.6-2.fc16:
https://admin.fedoraproject.org/updates/FEDORA-2011-14694 (stable)
* freetype-2.4.4-6.fc15:
https://admin.fedoraproject.org/updates/FEDORA-2011-14749 (testing)
* freetype-2.4.2-6.fc14:
https://admin.fedoraproject.org/updates/FEDORA-2011-14762 (testing)

I have issued freetype-freeworld builds in RPM Fusion Free with the fix as
well:
* freetype-freeworld-2.4.6-2.fc16
* freetype-freeworld-2.4.4-5.fc15
* freetype-freeworld-2.4.2-7.fc14
(I'll build a 2.4.7 for F17 after RPM Fusion branches F16, which AFAICT they
haven't done yet.)

-- 
Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.


More information about the fonts-bugs mailing list