]> code.ossystems Code Review - openembedded-core.git/commit
libxfont: Security Advisory - libxfont - CVE-2015-1802
authorLi Zhou <li.zhou@windriver.com>
Thu, 23 Apr 2015 09:20:06 +0000 (17:20 +0800)
committerRichard Purdie <richard.purdie@linuxfoundation.org>
Tue, 28 Apr 2015 06:56:00 +0000 (07:56 +0100)
commit0ff9f2bf0e44a7b47a98234a12714c780825e286
tree5d396791b65e5e7f1031fbf5db1a4316a6d635bb
parent6b04ae2c0439b83c0445fd1b8cb9cba5cee6b9bc
libxfont: Security Advisory - libxfont - CVE-2015-1802

bdfReadProperties: property count needs range check

Avoid integer overflow or underflow when allocating memory arrays
by multiplying the number of properties reported for a BDF font.

Signed-off-by: Li Zhou <li.zhou@windriver.com>
Signed-off-by: Richard Purdie <richard.purdie@linuxfoundation.org>
meta/recipes-graphics/xorg-lib/libxfont/0001-bdfReadProperties-property-count-needs-range-check-C.patch [new file with mode: 0644]
meta/recipes-graphics/xorg-lib/libxfont_1.5.0.bb