UbuntuUpdates.org

Package "fontconfig-config"

Name: fontconfig-config

Description:

generic font configuration library - configuration

Latest version: 2.11.0-0ubuntu4.2
Release: trusty (14.04)
Level: updates
Repository: main
Head package: fontconfig

Links


Download "fontconfig-config"


Other versions of "fontconfig-config" in Trusty

Repository Area Version
base main 2.11.0-0ubuntu4
security main 2.11.0-0ubuntu4.2

Changelog

Version: 2.11.0-0ubuntu4.2 2016-08-17 20:07:15 UTC

  fontconfig (2.11.0-0ubuntu4.2) trusty-security; urgency=medium

  * SECURITY UPDATE: double free when handling cache files
    - debian/patches/CVE-2016-5384.patch: properly validate offsets in
      cache files in src/fccache.c.
    - CVE-2016-5384

 -- Marc Deslauriers <email address hidden> Tue, 16 Aug 2016 13:30:18 -0400

Source diff to previous version
CVE-2016-5384 fontconfig before 2.12.1 does not validate offsets, which allows local users to trigger arbitrary free calls and consequently conduct double free att

Version: 2.11.0-0ubuntu4.1 2014-06-17 13:07:02 UTC

  fontconfig (2.11.0-0ubuntu4.1) trusty; urgency=medium

  * 0001-Bug-73291-poppler-does-not-show-fl-ligature.patch: Don't alias TeX
    Gyre Termes to Times as it has a broken 'fi' ligature. (LP: #1325230)
 -- Iain Lane <email address hidden> Wed, 04 Jun 2014 17:04:05 +0100

1325230 evince does not display ligatures



About   -   Send Feedback to @ubuntu_updates