[ubuntu/precise-security] freetype 2.4.8-1ubuntu2.3 (Accepted)

Marc Deslauriers marc.deslauriers at canonical.com
Thu Sep 10 17:06:52 UTC 2015


freetype (2.4.8-1ubuntu2.3) precise-security; urgency=medium

  * SECURITY UPDATE: uninitialized memory reads (LP: #1449225)
    - debian/patches-freetype/savannah-bug-41309.patch: fix use of
      uninitialized data in src/cid/cidload.c, src/psaux/psobjs.c,
      src/type1/t1load.c, src/type42/t42parse.c.
    - No CVE number
  * SECURITY UPDATE: denial of service via infinite loop in parse_encode
    (LP: #1492124)
    - debian/patches-freetype/savannah-bug-41590.patch: protect against
      invalid charcode in src/type1/t1load.c.
    - No CVE number

Date: 2015-09-10 12:09:12.584609+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/freetype/2.4.8-1ubuntu2.3
-------------- next part --------------
Sorry, changesfile not available.


More information about the Precise-changes mailing list