Bug 746226 (CVE-2011-3256)
Summary: | CVE-2011-3256 freetype: FT_Bitmap_New integer overflow, FreeType TT_Vary_Get_Glyph_Deltas improper input validation | ||||||
---|---|---|---|---|---|---|---|
Product: | [Other] Security Response | Reporter: | Jan Lieskovsky <jlieskov> | ||||
Component: | vulnerability | Assignee: | Red Hat Product Security <security-response-team> | ||||
Status: | CLOSED ERRATA | QA Contact: | |||||
Severity: | high | Docs Contact: | |||||
Priority: | high | ||||||
Version: | unspecified | CC: | bressers, mjc, mkasik, security-response-team | ||||
Target Milestone: | --- | Keywords: | Security | ||||
Target Release: | --- | ||||||
Hardware: | All | ||||||
OS: | Linux | ||||||
Whiteboard: | |||||||
Fixed In Version: | freetype 2.4.7 | Doc Type: | Bug Fix | ||||
Doc Text: | Story Points: | --- | |||||
Clone Of: | Environment: | ||||||
Last Closed: | 2015-08-24 15:46:13 UTC | Type: | --- | ||||
Regression: | --- | Mount Type: | --- | ||||
Documentation: | --- | CRM: | |||||
Verified Versions: | Category: | --- | |||||
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |||||
Cloudforms Team: | --- | Target Upstream Version: | |||||
Embargoed: | |||||||
Bug Depends On: | 747081, 747082, 747083, 747084, 747941, 749174, 749175, 785154, 806289, 889398 | ||||||
Bug Blocks: | 746228, 785174 | ||||||
Attachments: |
|
Description
Jan Lieskovsky
2011-10-14 12:51:24 UTC
Corrected in v2.4.7 upstream release: [5] http://sourceforge.net/projects/freetype/files/freetype2/2.4.7/README/view [6] http://freetype.sourceforge.net/index2.html#release-freetype-2.4.7 Created attachment 528829 [details]
upstream patch
It seems that this issue not only affects the versions of FreeType as shipped with Red Hat Enterprise Linux 4, 5 and 6, but also affects the versions of FreeType embedded in other packages. I'm still not sure if ots can influence on something for Firefox and Thunderbird, because it would reduce its score considerably. This issue has been addressed in following products: Red Hat Enterprise Linux 4 Red Hat Enterprise Linux 5 Red Hat Enterprise Linux 6 Via RHSA-2011:1402 https://rhn.redhat.com/errata/RHSA-2011-1402.html Created mingw32-freetype tracking bugs for this issue Affects: fedora-all [bug 749175] Created freetype tracking bugs for this issue Affects: fedora-all [bug 749174] This issue has been addressed in following products: Red Hat Enterprise Linux 5.6 EUS - Server Only Via RHSA-2012:0094 https://rhn.redhat.com/errata/RHSA-2012-0094.html |