[ft-devel] Fix for CVE-2010-3311

2011-06-24 Thread İsmail Dönmez
Hi all; I am trying to audit our local patches to freetype2 in openSUSE to reduce the number of patches we apply. I noticed that fix for CVE-2010-3311 [0] is not applied to upstream freetype source. Attached is the fix for the issue with the demo CFF file. It would be nice to get this fixed so

Re: [ft-devel] Fix for CVE-2010-3311

2011-06-24 Thread Werner LEMBERG
I am trying to audit our local patches to freetype2 in openSUSE to reduce the number of patches we apply. I noticed that fix for CVE-2010-3311 [0] is not applied to upstream freetype source. Attached is the fix for the issue with the demo CFF file. It would be nice to get this fixed so we

Re: [ft-devel] Fix for CVE-2010-3311

2011-06-24 Thread İsmail Dönmez
Hi; On Fri, Jun 24, 2011 at 6:11 PM, Werner LEMBERG w...@gnu.org wrote: I am trying to audit our local patches to freetype2 in openSUSE to reduce the number of patches we apply. I noticed that fix for CVE-2010-3311 [0] is not applied to upstream freetype source. Attached is the fix for