[ubuntu/yakkety-proposed] fontconfig 2.11.94-0ubuntu2 (Accepted)

Marc Deslauriers marc.deslauriers at ubuntu.com
Wed Aug 17 12:39:15 UTC 2016


fontconfig (2.11.94-0ubuntu2) yakkety; urgency=medium

  * SECURITY UPDATE: double free when handling cache files
    - debian/patches/CVE-2016-5384.patch: properly validate offsets in
      cache files in src/fccache.c.
    - CVE-2016-5384

Date: Tue, 16 Aug 2016 13:25:22 -0400
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
https://launchpad.net/ubuntu/+source/fontconfig/2.11.94-0ubuntu2
-------------- next part --------------
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Tue, 16 Aug 2016 13:25:22 -0400
Source: fontconfig
Binary: fontconfig fontconfig-config fontconfig-udeb libfontconfig1-dev libfontconfig1 libfontconfig1-dbg
Architecture: source
Version: 2.11.94-0ubuntu2
Distribution: yakkety
Urgency: medium
Maintainer: Ubuntu Developers <ubuntu-devel-discuss at lists.ubuntu.com>
Changed-By: Marc Deslauriers <marc.deslauriers at ubuntu.com>
Description:
 fontconfig - generic font configuration library - support binaries
 fontconfig-config - generic font configuration library - configuration
 fontconfig-udeb - generic font configuration library - minimal runtime (udeb)
 libfontconfig1 - generic font configuration library - runtime
 libfontconfig1-dbg - generic font configuration library - debugging symbols
 libfontconfig1-dev - generic font configuration library - development
Changes:
 fontconfig (2.11.94-0ubuntu2) yakkety; urgency=medium
 .
   * SECURITY UPDATE: double free when handling cache files
     - debian/patches/CVE-2016-5384.patch: properly validate offsets in
       cache files in src/fccache.c.
     - CVE-2016-5384
Checksums-Sha1:
 5cc86f63b40eac65cad2c36d3cc3b2942733e166 2279 fontconfig_2.11.94-0ubuntu2.dsc
 691be9b404fe69c9c8319bc5d4771a16736296f3 27932 fontconfig_2.11.94-0ubuntu2.debian.tar.xz
Checksums-Sha256:
 3b8ed29b78d8418e1d7020029124429180dc2bba9878d562e48121e652e19e9a 2279 fontconfig_2.11.94-0ubuntu2.dsc
 1d6ac07366236d37ed2994a144fc6598020d4c934c4eefe70a87601014cfcb0d 27932 fontconfig_2.11.94-0ubuntu2.debian.tar.xz
Files:
 7a64793aca8ff852f7a99c716ffb77d5 2279 fonts optional fontconfig_2.11.94-0ubuntu2.dsc
 1527bc9abef9c13eef6178b4369dda2e 27932 fonts optional fontconfig_2.11.94-0ubuntu2.debian.tar.xz
Original-Maintainer: Keith Packard <keithp at debian.org>

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1
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=qkV6
-----END PGP SIGNATURE-----


More information about the Yakkety-changes mailing list