Path to this page:
Subject: CVS commit: pkgsrc/graphics/freetype2
From: Matthias Drochner
Date: 2007-04-05 18:29:38
Message id: 20070405162938.C79222150A@cvs.netbsd.org
Log Message:
pull in a patch from freetype CVS:
* src/bdf/bdflib.c (setsbit, sbitset): Handle values >= 128
gracefully.
(_bdf_set_default_spacing): Increase `name' buffer size to 256 and
issue an error for longer names.
(_bdf_parse_glyphs): Limit allowed number of glyphs in font to the
number of code points in Unicode.
This fixes CVE-2007-1351.
Files: