[hafqa] [hafqa] [Bug 3701] New: DSA-1635-1 freetype -- multiple vulnerabilities

From: bugzilla-daemon at maemo.org bugzilla-daemon at maemo.org
Date: Sat Sep 13 09:24:57 EEST 2008
https://bugs.maemo.org/show_bug.cgi?id=3701

           Summary: DSA-1635-1 freetype -- multiple vulnerabilities
           Product: System software
           Version: unspecified
          Platform: All
               URL: http://www.debian.org/security/2008/dsa-1635
        OS/Version: Linux
            Status: NEW
          Severity: major
          Priority: Low
         Component: Fonts
        AssignedTo: jakub.pavelek at nokia.com
        ReportedBy: leif at sonic.net
         QAContact: fonts-bugs at maemo.org


Debian Security Advisory 1635: "Several local vulnerabilities have been
discovered in freetype, a FreeType 2 font engine, which could allow the
execution of arbitrary code." ... "For the unstable distribution (sid), these
problems have been fixed in version 2.3.6-1."

http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1806
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1807
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1808

The latest ITOS (4.2008.30-2) is using freetype 2.3.5-1osso1 (from December
2007).


-- 
Configure bugmail: https://bugs.maemo.org/userprefs.cgi?tab=email
Replies to this email are NOT read, instead please add comments at
https://bugs.maemo.org/show_bug.cgi?id=3701
------- You are receiving this mail because: -------
You are the QA contact for the bug, or are watching the QA contact.

More information about the hafqa mailing list