-
Committer:
Bazaar Package Importer
-
Author(s):
Martin Pitt
-
Date:
2006-09-06 13:27:04 UTC
-
Revision ID:
james.westby@ubuntu.com-20060906132704-237wvdyl7cgnpfkm
Tags: 1:1.2.0-0ubuntu2
* SECURITY UPDATE: DoS (X server crash) and possible root privilege escalation.
* Add debian/patches/pcf-int-overflow.diff:
- src/bitmap/pcfread.c: Check for integer overflows when parsing PCF font
files to prevent exploitable buffer overflow.
- Patch taken from upstream git:
http://gitweb.freedesktop.org/?p=xorg/lib/libXfont.git;a=commit;h=8d171fe61e564d8ed8f75034d4191062cecf190b
* CVE-2006-3467