diff options
| author | Peter Korsgaard <peter@korsgaard.com> | 2017-04-30 21:36:02 +0200 |
|---|---|---|
| committer | Peter Korsgaard <peter@korsgaard.com> | 2017-05-01 09:20:14 +0200 |
| commit | 84e3e5a9f0a6028d230c757fbac8e8895e31dcc3 (patch) | |
| tree | 4b529b19a86061a9178b7a1fe7619126fee92b43 /package/python-ipython/0001-set-correct-python-executable-path.patch | |
| parent | eac5d8c01d2e338ecc46f2da692365800033ce4c (diff) | |
| download | buildroot-84e3e5a9f0a6028d230c757fbac8e8895e31dcc3.tar.gz buildroot-84e3e5a9f0a6028d230c757fbac8e8895e31dcc3.zip | |
freetype: add upstream security fixes for CVE-2017-8105 and CVE-2017-8287
Add upstream post-2.7.1 commits (except for ChangeLog modifications) fixing
the following security issues:
CVE-2017-8105 - FreeType 2 before 2017-03-24 has an out-of-bounds write
caused by a heap-based buffer overflow related to the
t1_decoder_parse_charstrings function in psaux/t1decode.c.
CVE-2017-8287 - FreeType 2 before 2017-03-26 has an out-of-bounds write
caused by a heap-based buffer overflow related to the
t1_builder_close_contour function in psaux/psobjs.c.
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
Signed-off-by: Thomas Petazzoni <thomas.petazzoni@free-electrons.com>
(cherry picked from commit 6d557ac0133618fe4fe1d417bf584e21ef208871)
Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
Diffstat (limited to 'package/python-ipython/0001-set-correct-python-executable-path.patch')
0 files changed, 0 insertions, 0 deletions

