Bug#696918: unblock: freetype/2.4.9-1.1
Control: tags -1 + confirmed d-i
On Sat, 2012-12-29 at 12:51 +0100, Salvatore Bonaccorso wrote:
> Please unblock package freetype (but we can wait first the two day
> period to have the changes in unstable witouh an already granted
> unblock).
>
> The upload fixes three CVEs for freetype, see #696691:
>
> CVE-2012-5668: NULL Pointer Dereference in bdf_free_font.
> CVE-2012-5669: Out-of-bounds read in _bdf_parse_glyphs.
> CVE-2012-5670: Out-of-bounds write in _bdf_parse_glyphs.
>
> The package also provides a udeb, so this needs an explicit ACK by
> Cyril?
Yep. Unblocked pending the ack; thanks.
Regards,
Adam
Reply to: