[Bug 1191094] CVE-2014-9671 freetype: integer overflow in pcf_get_properties() leading to NULL pointer dereference

bugzilla at redhat.com bugzilla at redhat.com
Tue Feb 24 14:25:59 UTC 2015


https://bugzilla.redhat.com/show_bug.cgi?id=1191094



--- Comment #4 from Tomas Hoger <thoger at redhat.com> ---
The fix for this issue was found to introduce a regression that prevented
loading of certain PCF fonts.  Upstream bug and fix:

https://savannah.nongnu.org/bugs/?43774
http://git.savannah.gnu.org/cgit/freetype/freetype2.git/commit/?id=74af85c4b62b35e55b0ce9dec55ee10cbc4962a2
http://git.savannah.gnu.org/cgit/freetype/freetype2.git/commit/?id=06842c7b49c21f13c0ab61201daab6ff5a358fcc

Reported for Fedora in bug 1195652.

-- 
You are receiving this mail because:
You are on the CC list for the bug.
Unsubscribe from this bug https://bugzilla.redhat.com/token.cgi?t=ENcqzRIXCm&a=cc_unsubscribe


More information about the fonts-bugs mailing list