Login
Newsletter
Werbung

Sicherheit: Zwei Probleme in Freetype (Aktualisierung)
Aktuelle Meldungen Distributionen
Name: Zwei Probleme in Freetype (Aktualisierung)
ID: USN-3282-2
Distribution: Ubuntu
Plattformen: Ubuntu 12.04 LTS
Datum: Do, 18. Mai 2017, 06:35
Referenzen: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-8287
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-8105
Applikationen: Freetype
Update von: Zwei Probleme in Freetype

Originalnachricht


--===============6464752453521128000==
Content-Type: multipart/signed; micalg="pgp-sha256";
protocol="application/pgp-signature";
boundary="=-HMebZNzV4zwW4TuIuFAt"


--=-HMebZNzV4zwW4TuIuFAt
Content-Type: text/plain; charset="UTF-8
Content-Transfer-Encoding: quoted-printable

==========================================================================
Ubuntu Security Notice USN-3282-2
May 16, 2017

FreeType vulnerabilities
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 12.04 LTS

Summary:

FreeType could be made to crash or run programs if it opened a specially
crafted font file.

Software Description:
- freetype: FreeType 2 is a font engine library

Details:

It was discovered that FreeType did not correctly handle certain malformed
font files. If a user were tricked into using a specially crafted font
file, a remote attacker could cause FreeType to crash, resulting in a
denial of service, or possibly execute arbitrary code.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 12.04 LTS:
  libfreetype6                    2.4.8-1ubuntu2.6

After a standard system update you need to restart your session to make
all the necessary changes.

References:
  http://www.ubuntu.com/usn/usn-3282-2
  http://www.ubuntu.com/usn/usn-3282-1
  CVE-2017-8105, CVE-2017-8287

Package Information:
  https://launchpad.net/ubuntu/+source/freetype/2.4.8-1ubuntu2.6
--ÑMebZNzV4zwW4TuIuFAt
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: This is a digitally signed message part
Content-Transfer-Encoding: 7bit

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2
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=e5GX
-----END PGP SIGNATURE-----

--=-HMebZNzV4zwW4TuIuFAt--



--===============6464752453521128000==
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Disposition: inline

--
ubuntu-security-announce mailing list
ubuntu-security-announce@lists.ubuntu.com
Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-security-announce

--===============6464752453521128000==--
Pro-Linux
Pro-Linux @Facebook
Neue Nachrichten
Werbung