I would argue this is more than just "wishlist". In FreeType 2.6 an actual thread safety model was introduced making FreeType no longer thread antagonistic. Also, between 2.6 and 2.6.2 FreeType was heavily fuzzed which resulted in a number of fixes, some of which may be of security interest but because they were not found as vulnerabilities they will probably never end up with CVE numbers. If Xenial ships with FreeType 2.5.2, I have no doubt that it will have already known but unpatched security issues for its entire life.
-- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/1521299 Title: Update to 2.6.3 To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/freetype/+bug/1521299/+subscriptions -- ubuntu-bugs mailing list [email protected] https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
