diff options
author | miwi <miwi@FreeBSD.org> | 2009-04-18 17:55:39 +0800 |
---|---|---|
committer | miwi <miwi@FreeBSD.org> | 2009-04-18 17:55:39 +0800 |
commit | 57ea14ff571d3a63143b6b7322cca14fc7ffdfd7 (patch) | |
tree | 54c0a0fc84e6b39cdea4f8803c2f291c3ea345e2 /misc | |
parent | bb062b9241b9bc97f70f9998a51e6181bcd059e6 (diff) | |
download | freebsd-ports-gnome-57ea14ff571d3a63143b6b7322cca14fc7ffdfd7.tar.gz freebsd-ports-gnome-57ea14ff571d3a63143b6b7322cca14fc7ffdfd7.tar.zst freebsd-ports-gnome-57ea14ff571d3a63143b6b7322cca14fc7ffdfd7.zip |
- Fix security problems
Note:
An integer overflow error within the "cff_charset_compute_cids()"
function in cff/cffload.c can be exploited to potentially cause
a heap-based buffer overflow via a specially crafted font.
Multiple integer overflow errors within validation functions in
sfnt/ttcmap.c can be exploited to bypass length validations and
potentially cause buffer overflows via specially crafted fonts.
An integer overflow error within the "ft_smooth_render_generic()"
function in smooth/ftsmooth.c can be exploited to potentially cause
a heap-based buffer overflow via a specially crafted font.
Approved by: portmgr (pav)
Obtained from: freetype git repo
Security: http://www.vuxml.org/freebsd/20b4f284-2bfc-11de-bdeb-0030843d3802.html
Diffstat (limited to 'misc')
0 files changed, 0 insertions, 0 deletions