[SECURITY] Fedora 20 Update: mingw-freetype-2.5.0.1-2.fc20

updates at fedoraproject.org updates at fedoraproject.org
Tue Jun 10 03:12:07 UTC 2014


--------------------------------------------------------------------------------
Fedora Update Notification
FEDORA-2014-6830
2014-05-29 22:40:07
--------------------------------------------------------------------------------

Name        : mingw-freetype
Product     : Fedora 20
Version     : 2.5.0.1
Release     : 2.fc20
URL         : http://www.freetype.org
Summary     : Free and portable font rendering engine
Description :
MinGW Windows Freetype library.

--------------------------------------------------------------------------------
Update Information:

Fix CVE-2014-2240 and CVE-2014-2241 (RHBZ #1074648)
--------------------------------------------------------------------------------
ChangeLog:

* Thu May 29 2014 Erik van Pienbroek <epienbro at fedoraproject.org> - 2.5.0.1-2
- Fix CVE-2014-2240 and CVE-2014-2241 (RHBZ #1074648)
--------------------------------------------------------------------------------
References:

  [ 1 ] Bug #1074648 - CVE-2014-2240 mingw-freetype: freetype: OOB stack-based read/write in cf2_hintmap_build() [fedora-20]
        https://bugzilla.redhat.com/show_bug.cgi?id=1074648
--------------------------------------------------------------------------------

This update can be installed with the "yum" update program.  Use
su -c 'yum update mingw-freetype' at the command line.
For more information, refer to "Managing Software with yum",
available at http://docs.fedoraproject.org/yum/.

All packages are signed with the Fedora Project GPG key.  More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
--------------------------------------------------------------------------------


More information about the package-announce mailing list