Updated freetype2 packages fix security vulnerabilities
Publication date: 13 Sep 2015Modification date: 13 Sep 2015
Type: security
Affected Mageia releases : 4
Description
Updated freetype2 packages fix security vulnerabilities: It was discovered that FreeType did not correctly handle certain malformed font files. If a user were tricked into using a specially crafted font file, a remote attacker could cause FreeType to crash or hang, resulting in a denial of service, or possibly expose uninitialized memory (Savannah bugs 41309 and 41590).
References
SRPMS
4/tainted
- freetype2-2.5.0.1-3.4.mga4.tainted
4/core
- freetype2-2.5.0.1-3.4.mga4