[Bug 696616] Re: Heap corruption in font parsing with FreeType2 backend

2011-03-10 Thread Martin Pitt
This was fixed forMaverick, but natty is still vulnerable. ** Also affects: pango1.0 (Ubuntu Maverick) Importance: Undecided Status: New ** Also affects: pango1.0 (Ubuntu Natty) Importance: Low Status: Fix Released ** Changed in: pango1.0 (Ubuntu Maverick) Status: New

[Bug 696616] Re: Heap corruption in font parsing with FreeType2 backend

2011-03-10 Thread Launchpad Bug Tracker
** Branch linked: lp:ubuntu/pango1.0 -- You received this bug notification because you are a member of Ubuntu Desktop Bugs, which is subscribed to pango1.0 in ubuntu. https://bugs.launchpad.net/bugs/696616 Title: Heap corruption in font parsing with FreeType2 backend -- desktop-bugs mailing

[Bug 696616] Re: Heap corruption in font parsing with FreeType2 backend

2011-03-10 Thread Launchpad Bug Tracker
This bug was fixed in the package pango1.0 - 1.28.3-4ubuntu1 --- pango1.0 (1.28.3-4ubuntu1) natty; urgency=low * Merge changes from 1.28.3-1+squeeze1: - 01_CVE-2011-0020.patch: patch from Behdad Esfahbod to fix heap corruption. Closes: #610792, CVE-2011-0020. LP: #696616.

[Bug 696616] Re: Heap corruption in font parsing with FreeType2 backend

2011-03-02 Thread Launchpad Bug Tracker
This bug was fixed in the package pango1.0 - 1.28.2-0ubuntu1.1 --- pango1.0 (1.28.2-0ubuntu1.1) maverick-security; urgency=low * SECURITY UPDATE: denial of service and possible code execution via crafted font file (LP: #696616) - debian/patches/20_CVE-2011-0020.patch: check

[Bug 696616] Re: Heap corruption in font parsing with FreeType2 backend

2011-02-18 Thread Marc Deslauriers
** CVE added: http://www.cve.mitre.org/cgi- bin/cvename.cgi?name=2011-0020 -- You received this bug notification because you are a member of Ubuntu Desktop Bugs, which is subscribed to pango1.0 in ubuntu. https://bugs.launchpad.net/bugs/696616 Title: Heap corruption in font parsing with

[Bug 696616] Re: Heap corruption in font parsing with FreeType2 backend

2011-02-17 Thread Bug Watch Updater
** Changed in: pango Status: New = Fix Released -- You received this bug notification because you are a member of Ubuntu Desktop Bugs, which is subscribed to pango1.0 in ubuntu. https://bugs.launchpad.net/bugs/696616 Title: Heap corruption in font parsing with FreeType2 backend --

[Bug 696616] Re: Heap corruption in font parsing with FreeType2 backend

2011-02-08 Thread Sebastien Bacher
** Changed in: pango1.0 (Ubuntu) Status: Triaged = Fix Committed -- You received this bug notification because you are a member of Ubuntu Desktop Bugs, which is subscribed to pango1.0 in ubuntu. https://bugs.launchpad.net/bugs/696616 Title: Heap corruption in font parsing with

[Bug 696616] Re: Heap corruption in font parsing with FreeType2 backend

2011-01-25 Thread Launchpad Bug Tracker
** Branch linked: lp:debian/sid/pango1.0 -- You received this bug notification because you are a member of Ubuntu Desktop Bugs, which is subscribed to pango1.0 in ubuntu. https://bugs.launchpad.net/bugs/696616 Title: Heap corruption in font parsing with FreeType2 backend -- desktop-bugs

[Bug 696616] Re: Heap corruption in font parsing with FreeType2 backend

2011-01-25 Thread Bug Watch Updater
** Changed in: pango1.0 (Debian) Status: New = Fix Released -- You received this bug notification because you are a member of Ubuntu Desktop Bugs, which is subscribed to pango1.0 in ubuntu. https://bugs.launchpad.net/bugs/696616 Title: Heap corruption in font parsing with FreeType2

[Bug 696616] Re: Heap corruption in font parsing with FreeType2 backend

2011-01-22 Thread cyrillic
** Bug watch added: Debian Bug tracker #610792 http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=610792 ** Also affects: pango1.0 (Debian) via http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=610792 Importance: Unknown Status: Unknown -- You received this bug notification because

[Bug 696616] Re: Heap corruption in font parsing with FreeType2 backend

2011-01-22 Thread Bug Watch Updater
** Changed in: pango1.0 (Debian) Status: Unknown = New -- You received this bug notification because you are a member of Ubuntu Desktop Bugs, which is subscribed to pango1.0 in ubuntu. https://bugs.launchpad.net/bugs/696616 Title: Heap corruption in font parsing with FreeType2 backend

[Bug 696616] Re: Heap corruption in font parsing with FreeType2 backend

2011-01-21 Thread Bug Watch Updater
** Changed in: pango Status: Unknown = New ** Changed in: pango Importance: Unknown = Medium -- You received this bug notification because you are a member of Ubuntu Desktop Bugs, which is subscribed to pango1.0 in ubuntu. https://bugs.launchpad.net/bugs/696616 Title: Heap

[Bug 696616] Re: Heap corruption in font parsing with FreeType2 backend

2011-01-18 Thread Dan Rosenberg
** Description changed: ** Visibility changed to: Public -- You received this bug notification because you are a member of Ubuntu Desktop Bugs, which is subscribed to pango1.0 in ubuntu. https://bugs.launchpad.net/bugs/696616 Title: Heap corruption in font parsing with FreeType2 backend --

[Bug 696616] Re: Heap corruption in font parsing with FreeType2 backend

2011-01-18 Thread Kees Cook
** Bug watch added: GNOME Bug Tracker #639882 https://bugzilla.gnome.org/show_bug.cgi?id=639882 ** Also affects: pango via https://bugzilla.gnome.org/show_bug.cgi?id=639882 Importance: Unknown Status: Unknown ** Changed in: pango1.0 (Ubuntu) Assignee: Kees Cook (kees) =

[Bug 696616] Re: Heap corruption in font parsing with FreeType2 backend

2011-01-18 Thread Sebastien Bacher
** Changed in: pango1.0 (Ubuntu) Status: Confirmed = Triaged -- You received this bug notification because you are a member of Ubuntu Desktop Bugs, which is subscribed to pango1.0 in ubuntu. https://bugs.launchpad.net/bugs/696616 Title: Heap corruption in font parsing with FreeType2