Subject: CVS commit: pkgsrc/x11/libXfont
From: Thomas Klausner
Date: 2014-01-07 21:09:18
Message id: 20140107200918.97DB396@cvs.netbsd.org

Log Message:
Update to 1.4.7 (pkgsrc already had the security fix):

This release includes the fix for CVE-2013-6462, as well as other security
hardening and code cleanups, and makes libXfont compatible with libXtrans 1.3
on Solaris.

Alan Coopersmith (7):
      xstrdup -> strdup
      Replace malloc(strlen)+strcpy/strcat calls with strdup
      Don't leak old allocation if realloc fails to enlarge it
      Add AC_USE_SYSTEM_EXTENSIONS to expose non-standard extensions
      CVE-2013-6462: unlimited sscanf overflows stack buffer in bdfReadCharacters()
      Limit additional sscanf strings to fit buffer sizes
      libXfont 1.4.7

Julien Cristau (1):
      Make serverGeneration unsigned

Files:
RevisionActionfile
1.30modifypkgsrc/x11/libXfont/Makefile
1.21modifypkgsrc/x11/libXfont/distinfo
1.1removepkgsrc/x11/libXfont/patches/patch-src_bitmap_bdfread.c