Bugzilla – Bug 750942
VUL-0: CVE-2012-1128: freetype: NULL pointer dereference by moving zone2 pointer point for certain TrueType font
Last modified: 2017-07-03 07:35:12 UTC
Your friendly security team received the following report via oss-sec. Please respond ASAP. The issue is public CVE-2012-1128: freetype: NULL pointer dereference by moving zone2 pointer point for certain TrueType font (FU#35601) Upstream bug report: [1] https://savannah.nongnu.org/bugs/?35601 Upstream patch: [2] http://git.savannah.gnu.org/cgit/freetype/freetype2.git/commit/?id=96cddb8d1d32d6738b06552083db9d6cee5b5cb4 Red Hat Bugzilla entry: [3] https://bugzilla.redhat.com/show_bug.cgi?id=800584
bugbot adjusting priority
sr#18319: osc submitpac SUSE:SLE-10-SP4:Update:Test sr#18320: osc submitpac SUSE:SLE-11-SP1:GA sr#18321: osc submitpac SUSE:SLE-11:Update:Test (superseeding 18320) sr#18324: osc submitpac SUSE:SLE-9-SP3:Update:Teradata:Test sr#18323: osc submitpac SUSE:SLE-9-SP4:GA sr#111570: osc mr home:jnweiger:branches:OBS_Maintained:freetype2.openSUSE_11.4 freetype2 openSUSE:11.4 sr#111571: osc mr home:jnweiger:branches:OBS_Maintained:freetype2.openSUSE_12.1 freetype2 openSUSE:12.1 sr#111564: osc submitpac openSUSE:Factory done.
Update released for: freetype2, freetype2-32bit, freetype2-debuginfo, freetype2-debuginfo-32bit, freetype2-debuginfo-64bit, freetype2-debuginfo-x86, freetype2-debugsource, freetype2-devel, freetype2-devel-32bit, freetype2-x86, ft2demos, ft2demos-debuginfo, ft2demos-debugsource Products: SLE-DEBUGINFO 11-SP1 (i386, ia64, ppc64, s390x, x86_64) SLE-DESKTOP 11-SP1 (i386, x86_64) SLE-DESKTOP 11-SP1-FOR-SP2 (i386, x86_64) SLE-SDK 11-SP1 (i386, ia64, ppc64, s390x, x86_64) SLE-SDK 11-SP1-FOR-SP2 (i386, ia64, ppc64, s390x, x86_64) SLE-SERVER 11-SP1 (i386, ia64, ppc64, s390x, x86_64) SLE-SERVER 11-SP1-FOR-SP2 (i386, ia64, ppc64, s390x, x86_64) SLE-SERVER 11-SP1-TERADATA (x86_64) SLES4VMWARE 11-SP1 (i386, x86_64)
done