Re: Bug#1010304: bullseye-pu: package freetype/2.10.4+dfsg-1+deb11u1

2022-06-13 Thread Hugh McMaster
Hi Adam, On Sun, 29 May 2022 at 05:16, Adam D. Barratt wrote: > This looks OK to me, but as freetype builds a udeb it will want a KiBi- > ack; CCed and tagging accordingly. Thanks for the ack. I've been waiting for KiBi, but just wanted to check whether I'm supposed to upload before that

Re: Bug#1010304: bullseye-pu: package freetype/2.10.4+dfsg-1+deb11u1

2022-05-28 Thread Adam D. Barratt
Control: tags -1 + confirmed d-i On Thu, 2022-04-28 at 22:21 +1000, Hugh McMaster wrote: > This update fixes three security vulnerabilities in FreeType > 2.10.4+dfsg-1. > > - CVE-2022-27404: heap buffer overflow via invalid integer decrement > in > sfnt_init_face() and woff2_open_font(). > -