freetype 2.3.9-5ubuntu0.2 source package in Ubuntu
Changelog
freetype (2.3.9-5ubuntu0.2) karmic-security; urgency=low * SECURITY UPDATE: possible arbitrary code execution via buffer overflow in CFF Type2 CharStrings interpreter (LP: #617019) - debian/patches-freetype/CVE-2010-1797.patch: check number of operands in src/cff/cffgload.c. - CVE-2010-1797 * SECURITY UPDATE: possible arbitrary code execution via buffer overflow in the ftmulti demo program (LP: #617019) - debian/patches-ft2demos/CVE-2010-2541.patch: use strncat and adjust sizes in src/ftmulti.c. - CVE-2010-2541 * SECURITY UPDATE: possible arbitrary code execution via improper bounds checking (LP: #617019) - debian/patches-freetype/CVE-2010-2805.patch: fix calculation in src/base/ftstream.c. - CVE-2010-2805 * SECURITY UPDATE: possible arbitrary code execution via improper bounds checking (LP: #617019) - debian/patches-freetype/CVE-2010-2806.patch: check string sizes in src/type42/t42parse.c. - CVE-2010-2806 * SECURITY UPDATE: possible arbitrary code execution via improper type comparisons (LP: #617019) - debian/patches-freetype/CVE-2010-2807.patch: perform better bounds checking in src/smooth/ftsmooth.c, src/truetype/ttinterp.*. - CVE-2010-2807 * SECURITY UPDATE: possible arbitrary code execution via memory corruption in Adobe Type 1 Mac Font File (LWFN) fonts (LP: #617019) - debian/patches-freetype/CVE-2010-2808.patch: check rlen in src/base/ftobjs.c. - CVE-2010-2808 * SECURITY UPDATE: denial of service via bdf font (LP: #617019) - debian/patches-freetype/bug30135.patch: don't modify value in static string in src/bdf/bdflib.c. * SECURITY UPDATE: denial of service via nested "seac" calls - debian/patches-freetype/nested-seac.patch: handle nested calls correctly in include/freetype/internal/psaux.h, src/cff/cffgload.c, src/cff/cffgload.h, src/psaux/t1decode.c. -- Marc Deslauriers <email address hidden> Fri, 13 Aug 2010 10:05:35 -0400
Upload details
- Uploaded by:
- Marc Deslauriers
- Uploaded to:
- Karmic
- Original maintainer:
- Ubuntu Development Team
- Architectures:
- any
- Section:
- libs
- Urgency:
- Low Urgency
See full publishing history Publishing
Series | Published | Component | Section |
---|
Downloads
File | Size | SHA-256 Checksum |
---|---|---|
freetype_2.3.9.orig.tar.gz | 1.5 MiB | 82162b379259c002e1646a93155870ce22084bfc945be2100823499f3dd7b138 |
freetype_2.3.9-5ubuntu0.2.diff.gz | 42.5 KiB | 26a4ed01ef7f0c430eb55f5e1192d8cda0b0bc4a43b982b2abba3e6a3b348624 |
freetype_2.3.9-5ubuntu0.2.dsc | 1.3 KiB | 66f6cce1148adff66b052189b7c4cc17950e3f9e03561ce67d9c0e5790b2b5fc |
Available diffs
Binary packages built by this source
- freetype2-demos: No summary available for freetype2-demos in ubuntu karmic.
No description available for freetype2-demos in ubuntu karmic.
- libfreetype6: No summary available for libfreetype6 in ubuntu karmic.
No description available for libfreetype6 in ubuntu karmic.
- libfreetype6-dev: No summary available for libfreetype6-dev in ubuntu karmic.
No description available for libfreetype6-dev in ubuntu karmic.
- libfreetype6-udeb: No summary available for libfreetype6-udeb in ubuntu karmic.
No description available for libfreetype6-udeb in ubuntu karmic.