[Bug 800590] CVE-2012-1132 freetype: Out-of heap-based buffer read flaw in Type1 font loader by parsing font dictionary entries (FU#35606)

bugzilla at redhat.com bugzilla at redhat.com
Tue Mar 6 20:51:50 UTC 2012

Please do not reply directly to this email. All additional
comments should be made in the comments box of this bug.


Kurt Seifried <kseifried at redhat.com> changed:

           What    |Removed                     |Added
            Summary|freetype: Out-of heap-based |CVE-2012-1132 freetype:
                   |buffer read flaw in Type1   |Out-of heap-based buffer
                   |font loader by parsing font |read flaw in Type1 font
                   |dictionary entries          |loader by parsing font
                   |(FU#35606)                  |dictionary entries
                   |                            |(FU#35606)
              Alias|                            |CVE-2012-1132

--- Comment #1 from Kurt Seifried <kseifried at redhat.com> 2012-03-06 15:51:48 EST ---
Added CVE as per http://www.openwall.com/lists/oss-security/2012/03/06/16

Configure bugmail: https://bugzilla.redhat.com/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are on the CC list for the bug.

More information about the fonts-bugs mailing list