ELSA-2010-0737

ELSA-2010-0737 - freetype security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2010-10-04

Description



[2.2.1-28]
- Modify freetype-2.2.1-CVE-2010-3054.patch
- Resolves: #638142

[2.2.1-27]
- Add freetype-2.2.1-CVE-2010-2806.patch
(Protect against negative string_size. Fix comparison.)
- Add freetype-2.2.1-CVE-2010-3311.patch
(Don't seek behind end of stream.)
- Add freetype-2.2.1-CVE-2010-3054.patch
(Protect against nested 'seac' calls.)
- Add freetype-2.2.1-CVE-2010-2808.patch
(Check the total length of collected POST segments.)
- Resolves: #638142


Related CVEs


CVE-2010-2806
CVE-2010-2808
CVE-2010-3054
CVE-2010-3311

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 4 (i386) freetype-2.1.9-17.el4.8.src.rpm0148dd1cf1a57d864fc6a0c64ec0cbbeELSA-2011-1455
freetype-2.1.9-17.el4.8.i386.rpm9289f04aa0350d00bfdca640d2710dedELSA-2011-1455
freetype-demos-2.1.9-17.el4.8.i386.rpm09dede855d6512372b422bf3bb2062e2ELSA-2011-1455
freetype-devel-2.1.9-17.el4.8.i386.rpme0bf66f058e5dd3e496c9be0f0a35862ELSA-2011-1455
freetype-utils-2.1.9-17.el4.8.i386.rpmf29fe5eac13300b199a6bbaa6fd67d86ELSA-2011-1455
Oracle Linux 4 (ia64) freetype-2.1.9-17.el4.8.src.rpm0148dd1cf1a57d864fc6a0c64ec0cbbeELSA-2011-1455
freetype-2.1.9-17.el4.8.i386.rpm9289f04aa0350d00bfdca640d2710dedELSA-2011-1455
freetype-2.1.9-17.el4.8.ia64.rpmabddbaec0e3c7386d7951d3bb7601f67ELSA-2011-1455
freetype-demos-2.1.9-17.el4.8.ia64.rpm038de81506c5d65c56380984ba068c1dELSA-2011-1455
freetype-devel-2.1.9-17.el4.8.ia64.rpm5b583da502fa22cd4d3934169d2be557ELSA-2011-1455
freetype-utils-2.1.9-17.el4.8.ia64.rpm58138d1a31e3d141d261847cb261251eELSA-2011-1455
Oracle Linux 4 (x86_64) freetype-2.1.9-17.el4.8.src.rpm0148dd1cf1a57d864fc6a0c64ec0cbbeELSA-2011-1455
freetype-2.1.9-17.el4.8.i386.rpm9289f04aa0350d00bfdca640d2710dedELSA-2011-1455
freetype-2.1.9-17.el4.8.x86_64.rpm6d0c79aaef6a95faa08bbcf5aed832b7ELSA-2011-1455
freetype-demos-2.1.9-17.el4.8.x86_64.rpmb1231ac3f3db648cd8876809f0840d6aELSA-2011-1455
freetype-devel-2.1.9-17.el4.8.x86_64.rpm7b47e16c3fd2aed89b62e5c8230e6e48ELSA-2011-1455
freetype-utils-2.1.9-17.el4.8.x86_64.rpm44d5d6e5f29d1522d83f9cc51e97e81dELSA-2011-1455
Oracle Linux 5 (i386) freetype-2.2.1-28.el5_5.src.rpm46e0cd39f908c75c0f5ca1049bf1c52aELSA-2013-0216
freetype-2.2.1-28.el5_5.i386.rpmab897ec585307f95e32b35704463cbd4ELSA-2013-0216
freetype-demos-2.2.1-28.el5_5.i386.rpmf6121b9c1c4e250b73c1ed7025f74bc9ELSA-2013-0216
freetype-devel-2.2.1-28.el5_5.i386.rpm0701e5363b5fc2153b11e7c094247da0ELSA-2013-0216
Oracle Linux 5 (ia64) freetype-2.2.1-28.el5_5.src.rpm46e0cd39f908c75c0f5ca1049bf1c52aELSA-2013-0216
freetype-2.2.1-28.el5_5.i386.rpmab897ec585307f95e32b35704463cbd4ELSA-2013-0216
freetype-2.2.1-28.el5_5.ia64.rpm327ce6debe1e38e286ebde19f3f5f9a2ELSA-2013-0216
freetype-demos-2.2.1-28.el5_5.ia64.rpmf5d554f2a2fc61b95b77b2c87e915c3bELSA-2013-0216
freetype-devel-2.2.1-28.el5_5.ia64.rpm26baec00ed91114e92a7b759ceb5ad27ELSA-2013-0216
Oracle Linux 5 (x86_64) freetype-2.2.1-28.el5_5.src.rpm46e0cd39f908c75c0f5ca1049bf1c52aELSA-2013-0216
freetype-2.2.1-28.el5_5.i386.rpmab897ec585307f95e32b35704463cbd4ELSA-2013-0216
freetype-2.2.1-28.el5_5.x86_64.rpm5475858d97c721e947c97e49c46ae743ELSA-2013-0216
freetype-demos-2.2.1-28.el5_5.x86_64.rpm368b0a0dff1dfbcf183dc33be6d6e914ELSA-2013-0216
freetype-devel-2.2.1-28.el5_5.i386.rpm0701e5363b5fc2153b11e7c094247da0ELSA-2013-0216
freetype-devel-2.2.1-28.el5_5.x86_64.rpmecef17cbcca37357be6d36044e5c30a1ELSA-2013-0216



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete