freetype 2.3.9-5ubuntu0.1 source package in Ubuntu

Changelog

freetype (2.3.9-5ubuntu0.1) karmic-security; urgency=low

  * SECURITY UPDATE: denial of service and possible arbitrary code
    execution via invalid free
    - debian/patches/CVE-2010-2498.patch: validate number of points in
      src/pshinter/pshalgo.c.
    - CVE-2010-2498
  * SECURITY UPDATE: arbitrary code execution via buffer overflow
    - debian/patches/CVE-2010-2499.patch: check positions and return code
      in src/base/ftobjs.c.
    - CVE-2010-2499
  * SECURITY UPDATE: arbitrary code execution via integer overflow
    - debian/patches/CVE-2010-2500.patch: switch to unsigned in
      src/smooth/ftgrays.c, check signed width and height in
      src/smooth/ftsmooth.c.
    - CVE-2010-2500
  * SECURITY UPDATE: arbitrary code execution via heap buffer overflow
    - debian/patches/CVE-2010-2519.patch: correctly calculate length in
      src/base/ftobjs.c.
    - CVE-2010-2519
  * SECURITY UPDATE: arbitrary code execution via invalid realloc
    - debian/patches/CVE-2010-2520.patch: perform bounds checking in
      src/truetype/ttinterp.c.
    - CVE-2010-2520
  * SECURITY UPDATE: arbitrary code execution via buffer overflows
    - debian/patches/CVE-2010-2527.patch: change buffer sizes in
      src/{ftdiff,ftgrid,ftmulti,ftstring,ftview}.c.
    - CVE-2010-2527
 -- Marc Deslauriers <email address hidden>   Thu, 15 Jul 2010 09:32:35 -0400

Upload details

Uploaded by:
Marc Deslauriers
Uploaded to:
Karmic
Original maintainer:
Ubuntu Development Team
Architectures:
any
Section:
libs
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Downloads

File Size SHA-256 Checksum
freetype_2.3.9.orig.tar.gz 1.5 MiB 82162b379259c002e1646a93155870ce22084bfc945be2100823499f3dd7b138
freetype_2.3.9-5ubuntu0.1.diff.gz 37.9 KiB fd87fd249863f685f6dae635b94eab6d02f7c327acbabcee5ca4770328f2423d
freetype_2.3.9-5ubuntu0.1.dsc 1.3 KiB b566475e1e04b36e22c3e37429f7d250d916e34620c3aab2a35bc7b6a0028383

View changes file

Binary packages built by this source

freetype2-demos: No summary available for freetype2-demos in ubuntu karmic.

No description available for freetype2-demos in ubuntu karmic.

libfreetype6: No summary available for libfreetype6 in ubuntu karmic.

No description available for libfreetype6 in ubuntu karmic.

libfreetype6-dev: No summary available for libfreetype6-dev in ubuntu karmic.

No description available for libfreetype6-dev in ubuntu karmic.

libfreetype6-udeb: No summary available for libfreetype6-udeb in ubuntu karmic.

No description available for libfreetype6-udeb in ubuntu karmic.