Описание
Security update for freetype2
This update for freetype2 fixes the following security issues:
- CVE-2016-10244: Make sure that the parse_charstrings function in type1/t1load.c does ensure that a font contains a glyph name to prevent a DoS through a heap-based buffer over-read or possibly have unspecified other impact via a crafted file (bsc#1028103)
- CVE-2017-8105: Fix an out-of-bounds write caused by a heap-based buffer overflow related to the t1_decoder_parse_charstrings function in psaux/t1decode.ca (bsc#1035807)
- CVE-2017-8287: an out-of-bounds write caused by a heap-based buffer overflow related to the t1_builder_close_contour function in psaux/psobjs.c (bsc#1036457)
- Fix several integer overflow issues in truetype/ttinterp.c (bsc#1079600)
Список пакетов
SUSE Linux Enterprise Desktop 12 SP2
SUSE Linux Enterprise Desktop 12 SP3
SUSE Linux Enterprise Server 12 SP2
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server for Raspberry Pi 12 SP2
SUSE Linux Enterprise Server for SAP Applications 12 SP2
SUSE Linux Enterprise Server for SAP Applications 12 SP3
SUSE Linux Enterprise Software Development Kit 12 SP2
SUSE Linux Enterprise Software Development Kit 12 SP3
Ссылки
- Link for SUSE-SU-2018:0414-1
- E-Mail link for SUSE-SU-2018:0414-1
- SUSE Security Ratings
- SUSE Bug 1028103
- SUSE Bug 1035807
- SUSE Bug 1036457
- SUSE Bug 1079600
- SUSE CVE CVE-2016-10244 page
- SUSE CVE CVE-2017-7864 page
- SUSE CVE CVE-2017-8105 page
- SUSE CVE CVE-2017-8287 page
Описание
The parse_charstrings function in type1/t1load.c in FreeType 2 before 2.7 does not ensure that a font contains a glyph name, which allows remote attackers to cause a denial of service (heap-based buffer over-read) or possibly have unspecified other impact via a crafted file.
Затронутые продукты
Ссылки
- CVE-2016-10244
- SUSE Bug 1028103
Описание
FreeType 2 before 2017-02-02 has an out-of-bounds write caused by a heap-based buffer overflow related to the tt_size_reset function in truetype/ttobjs.c.
Затронутые продукты
Ссылки
- CVE-2017-7864
- SUSE Bug 1034178
Описание
FreeType 2 before 2017-03-24 has an out-of-bounds write caused by a heap-based buffer overflow related to the t1_decoder_parse_charstrings function in psaux/t1decode.c.
Затронутые продукты
Ссылки
- CVE-2017-8105
- SUSE Bug 1034186
- SUSE Bug 1035807
- SUSE Bug 1036457
- SUSE Bug 1079459
Описание
FreeType 2 before 2017-03-26 has an out-of-bounds write caused by a heap-based buffer overflow related to the t1_builder_close_contour function in psaux/psobjs.c.
Затронутые продукты
Ссылки
- CVE-2017-8287
- SUSE Bug 1034186
- SUSE Bug 1035807
- SUSE Bug 1036457
- SUSE Bug 1079459