[hafqa] [hafqa] [Bug 3701] DSA-1635-1 freetype -- multiple vulnerabilities

From: bugzilla-daemon at maemo.org bugzilla-daemon at maemo.org
Date: Thu Oct 9 22:44:17 EEST 2008
https://bugs.maemo.org/show_bug.cgi?id=3701


leif at synthesize.us changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |leif at synthesize.us




------- Comment #4 from leif at synthesize.us  2008-10-09 22:44 GMT+3 -------
(In reply to comment #3)
> then clearly it's webkit's responsibility to protect the os from hostile
> content.
> ... 
> for gecko, i'm trying to make sure we don't allow such dangerous content to be
> introduced (and yes we're working on implementing downloadable fonts)

I don't know what WebKit currently does or what you've got planned for Gecko,
but if there is a generalized way to protect against maliciously-crafted fonts
wouldn't that be better done by the font library rather than its consumer?

Can you share any details of what you have in mind here for Gecko?


-- 
Configure bugmail: https://bugs.maemo.org/userprefs.cgi?tab=email
Replies to this email are NOT read, instead please add comments at
https://bugs.maemo.org/show_bug.cgi?id=3701
------- You are receiving this mail because: -------
You are the QA contact for the bug, or are watching the QA contact.

More information about the hafqa mailing list