[ubuntu/vivid-security] freetype 2.5.2-2ubuntu3.1 (Accepted)
Marc Deslauriers
marc.deslauriers at canonical.com
Thu Sep 10 16:46:46 UTC 2015
freetype (2.5.2-2ubuntu3.1) vivid-security; urgency=medium
* SECURITY UPDATE: uninitialized memory reads (LP: #1449225)
- debian/patches-freetype/savannah-bug-41309.patch: fix use of
uninitialized data in src/cid/cidload.c, src/psaux/psobjs.c,
src/type1/t1load.c, src/type42/t42parse.c.
- No CVE number
* SECURITY UPDATE: denial of service via infinite loop in parse_encode
(LP: #1492124)
- debian/patches-freetype/savannah-bug-41590.patch: protect against
invalid charcode in src/type1/t1load.c.
- No CVE number
Date: 2015-09-10 12:08:14.476812+00:00
Changed-By: Marc Deslauriers <marc.deslauriers at canonical.com>
https://launchpad.net/ubuntu/+source/freetype/2.5.2-2ubuntu3.1
-------------- next part --------------
Sorry, changesfile not available.
More information about the Vivid-changes
mailing list