Updated freetype2 packages fix security vulnerability
Publication date: 20 Oct 2020Modification date: 20 Oct 2020
Type: security
Affected Mageia releases : 7
CVE: CVE-2020-15999
Description
A heap buffer overflow has been found in freetype2 before 2.10.4. Malformed TTF files with PNG sbit glyphs can cause a heap buffer overflow in Load_SBit_Png as libpng uses the original 32-bit values, which are saved in png_struct. If the original width and/or height are greater than 65535, the allocated buffer won't be able to fit the bitmap. (CVE-2020-15999)
References
SRPMS
7/core
- freetype2-2.9.1-4.1.mga7
7/tainted
- freetype2-2.9.1-4.1.mga7.tainted