Package "libxfont-dev"
| Name: |
libxfont-dev
|
Description: |
X11 font rasterisation library (development headers)
|
| Latest version: |
1:2.0.5-1ubuntu0.2 |
| Release: |
jammy (22.04) |
| Level: |
security |
| Repository: |
main |
| Head package: |
libxfont |
Links
Download "libxfont-dev"
Other versions of "libxfont-dev" in Jammy
Changelog
|
libxfont (1:2.0.5-1ubuntu0.2) jammy-security; urgency=medium
* Manage the security patches with quilt. The same fixes as 1ubuntu0.1 are
applied, but as tracked patches rather than edits made directly to the
upstream sources.
- debian/patches/CVE-2026-56001.patch,
debian/patches/CVE-2026-56002.patch,
debian/patches/CVE-2026-56003.patch: add the patch files, which
1ubuntu0.1 referenced in its changelog but did not ship.
- debian/patches/series: list the three patches (was "# placeholder").
* debian/patches/CVE-2026-56001.patch: additionally convert the
"Couldn't allocate bitmaps" fprintf() to %zu instead of %d.
-- John Breton <email address hidden> Thu, 16 Jul 2026 07:44:32 -0400
|
| CVE-2026-56001 |
A heap buffer overflow in BitmapScaleBitmaps in libXfont2 before 2.0.8 due to an overflowing 32bit size could be used by attackers able to access the |
| CVE-2026-56002 |
A heap bufferflow in pcfReadFont() due to missing glyph bounds checking in libXfont2 before 2.0.8 allows attackers authenticated as X client to exec |
| CVE-2026-56003 |
A heap buffer overflow due to missing size checking in the property buffer when parsing PCF files in libXfont2 ComputeScaledProperties() before libXf |
|
About
-
Send Feedback to @ubuntu_updates