[ubuntu/bionic-updates] freetype 2.8.1-2ubuntu2.1 (Accepted)

Ubuntu Archive Robot cjwatson+ubuntu-archive-robot at chiark.greenend.org.uk
Tue Oct 20 10:58:13 UTC 2020


freetype (2.8.1-2ubuntu2.1) bionic-security; urgency=medium

  * SECURITY UPDATE: heap buffer overflow via integer truncation in
    Load_SBit_Png
    - debian/patches-freetype/CVE-2020-15999.patch: Update
      src/sfnt/pngshim.c to test and reject invalid bitmap size earlier in
      Load_SBit_Png. Based on upstream patch.
    - CVE-2020-15999

Date: 2020-10-20 04:04:21.883504+00:00
Changed-By: Alex Murray <alex.murray at canonical.com>
Signed-By: Ubuntu Archive Robot <cjwatson+ubuntu-archive-robot at chiark.greenend.org.uk>
https://launchpad.net/ubuntu/+source/freetype/2.8.1-2ubuntu2.1
-------------- next part --------------
Sorry, changesfile not available.


More information about the Bionic-changes mailing list