[Bug 892277] [NEW] Sync freetype 2.4.8-1 (main) from Debian unstable (main)

Launchpad Bug Tracker 892277 at bugs.launchpad.net
Fri Nov 18 17:53:48 UTC 2011


You have been subscribed to a public bug by Tyler Hicks (tyhicks):

Please sync freetype 2.4.8-1 (main) from Debian unstable (main)

FreeType 2.4.8 fixes an arbitrary code execution vulnerability when
loading specially crafted CID-keyed PostScript font files.

FreeType 2.4.8 is primarily a security release:

http://freetype.sourceforge.net/index2.html#release-freetype-2.4.8

Changelog entries since current precise version 2.4.7-2:

freetype (2.4.8-1) unstable; urgency=high

  * New upstream release
    - upstream fix for CVE-2011-3439.  Closes: #649122.
    - adjust libfreetype6.symbols for a newly-exported function.

 -- Steve Langasek <vorlon at debian.org>  Thu, 17 Nov 2011 22:28:14 +0000

** Affects: freetype (Ubuntu)
     Importance: Wishlist
         Status: New

-- 
Sync freetype 2.4.8-1 (main) from Debian unstable (main)
https://bugs.launchpad.net/bugs/892277
You received this bug notification because you are a member of Ubuntu Sponsors Team, which is subscribed to the bug report.



More information about the Ubuntu-sponsors mailing list