~ubuntu-branches/ubuntu/precise/freetype/precise-security

Viewing all changes in revision 48.

  • Committer: Package Import Robot
  • Author(s): Marc Deslauriers
  • Date: 2013-01-11 13:45:45 UTC
  • Revision ID: package-import@ubuntu.com-20130111134545-0so5q8n8dhakf3nf
Tags: 2.4.8-1ubuntu2.1
* SECURITY UPDATE: denial of service and possible code execution via NULL
  pointer dereference
  - debian/patches-freetype/CVE-2012-5668.patch: reset props_size in case
    of allocation error in src/bdf/bdflib.c.
  - CVE-2012-5668
* SECURITY UPDATE: denial of service and possible code execution via heap
  buffer over-read in BDF parsing
  - debian/patches-freetype/CVE-2012-5669.patch: use correct array size
    in src/bdf/bdflib.c.
  - CVE-2012-5669

expand all expand all

Show diffs side-by-side

added added

removed removed

Lines of Context: