Pop-Up Thingie

>>> Magnum BBS <<<
  • Home
  • Forum
  • Files
  • Log in

  1. Forum
  2. Usenet
  3. LINUX.DEBIAN.ANNOUNCE.SEC
  • [SECURITY] [DSA-2105-1] New freetype packages fix several vulnerabiliti

    From Giuseppe Iuculano@1:229/2 to All on Tue Sep 7 22:50:03 2010
    From: [email protected]

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1

    - ------------------------------------------------------------------------ Debian Security Advisory DSA-2105-1 [email protected] http://www.debian.org/security/ Giuseppe Iuculano September 07, 2010 http://www.debian.org/security/faq
    - ------------------------------------------------------------------------

    Package : freetype
    Vulnerability : several
    Problem type : local(remote)
    Debian-specific: no
    CVE Id(s) : CVE-2010-1797 CVE-2010-2541 CVE-2010-2805 CVE-2010-2806
    CVE-2010-2807 CVE-2010-2808 CVE-2010-3053


    Several vulnerabilities have been discovered in the FreeType font
    library. The Common Vulnerabilities and Exposures project identifies the following problems:

    CVE-2010-1797

    Multiple stack-based buffer overflows in the
    cff_decoder_parse_charstrings function in the CFF Type2 CharStrings
    interpreter in cff/cffgload.c in FreeType allow remote attackers to
    execute arbitrary code or cause a denial of service (memory
    corruption) via crafted CFF opcodes in embedded fonts in a PDF
    document, as demonstrated by JailbreakMe.

    CVE-2010-2541

    Buffer overflow in ftmulti.c in the ftmulti demo program in FreeType
    allows remote attackers to cause a denial of service (application
    crash) or possibly execute arbitrary code via a crafted font file.

    CVE-2010-2805

    The FT_Stream_EnterFrame function in base/ftstream.c in FreeType does
    not properly validate certain position values, which allows remote
    attackers to cause a denial of service (application crash) or
    possibly execute arbitrary code via a crafted font file

    CVE-2010-2806

    Array index error in the t42_parse_sfnts function in
    type42/t42parse.c in FreeType allows remote attackers to cause a
    denial of service (application crash) or possibly execute arbitrary
    code via negative size values for certain strings in FontType42 font
    files, leading to a heap-based buffer overflow.

    CVE-2010-2807

    FreeType uses incorrect integer data types during bounds checking,
    which allows remote attackers to cause a denial of service
    (application crash) or possibly execute arbitrary code via a crafted
    font file.

    CVE-2010-2808

    Buffer overflow in the Mac_Read_POST_Resource function in
    base/ftobjs.c in FreeType allows remote attackers to cause a denial
    of service (memory corruption and application crash) or possibly
    execute arbitrary code via a crafted Adobe Type 1 Mac Font File (aka
    LWFN) font.

    CVE-2010-3053

    bdf/bdflib.c in FreeType allows remote attackers to cause a denial of
    service (application crash) via a crafted BDF font file, related to
    an attempted modification of a value in a static string.


    For the stable distribution (lenny), these problems have been fixed in
    version 2.3.7-2+lenny3

    For the unstable distribution (sid) and the testing distribution
    (squeeze), these problems have been fixed in version 2.4.2-1


    We recommend that you upgrade your freetype package.

    Upgrade instructions
    - --------------------

    wget url
    will fetch the file for you
    dpkg -i file.deb
    will install the referenced file.

    If you are using the apt-get package manager, use the line for
    sources.list as given below:

    apt-get update
    will update the internal database
    apt-get upgrade
    will install corrected packages

    You may use an automated update by adding the resources from the
    footer to the proper configuration.


    Debian GNU/Linux 5.0 alias lenny
    - --------------------------------

    Debian (stable)
    - ---------------

    Stable updates are available for alpha, amd64, arm, armel, hppa, i386, ia64, mips, mipsel, powerpc, s390 and sparc.

    Source archives:

    http://security.debian.org/pool/updates/main/f/freetype/freetype_2.3.7-2+lenny3.diff.gz
    Size/MD5 checksum: 39230 95a3841e7258573ca2d3e0075b8e7f73
    http://security.debian.org/pool/updates/main/f/freetype/freetype_2.3.7.orig.tar.gz
    Size/MD5 checksum: 1567540 c1a9f44fde316470176fd6d66af3a0e8
    http://security.debian.org/pool/updates/main/f/freetype/freetype_2.3.7-2+lenny3.dsc
    Size/MD5 checksum: 1219 2a2bf3d4568d92e2a48ebcda38140e73

    alpha architecture (DEC Alpha)

    http://security.debian.org/pool/updates/main/f/freetype/libfreetype6-dev_2.3.7-2+lenny3_alpha.deb
    Size/MD5 checksum: 775278 2f2ca060588fc33b6d7baae02201dbd2
    http://security.debian.org/pool/updates/main/f/freetype/libfreetype6_2.3.7-2+lenny3_alpha.deb
    Size/MD5 checksum: 412188 ad9537e93ed3fb61f9348470940f3ce5
    http://security.debian.org/pool/updates/main/f/freetype/libfreetype6-udeb_2.3.7-2+lenny3_alpha.udeb
    Size/MD5 checksum: 296592 e689b1c4b6bd7779e44d1cd641be9622
    http://security.debian.org/pool/updates/main/f/freetype/freetype2-demos_2.3.7-2+lenny3_alpha.deb
    Size/MD5 checksum: 253786 287a98ca57139d4dee8041eba2881e3b

    amd64 architecture (AMD x86_64 (AMD64))

    http://security.debian.org/pool/updates/main/f/freetype/libfreetype6-dev_2.3.7-2+lenny3_amd64.deb
    Size/MD5 checksum: 713260 f1d4002e7b6d185ff9f46bc25d67c4c9
    http://security.debian.org/pool/updates/main/f/freetype/freetype2-demos_2.3.7-2+lenny3_amd64.deb
    Size/MD5 checksum: 223170 cb00f76d826be115243faa9dfd0b8a91
    http://security.debian.org/pool/updates/main/f/freetype/libfreetype6-udeb_2.3.7-2+lenny3_amd64.udeb
    Size/MD5 checksum: 269796 40762e686138c27ac92b20174e67012e
    http://security.debian.org/pool/updates/main/f/freetype/libfreetype6_2.3.7-2+lenny3_amd64.deb
    Size/MD5 checksum: 385848 0294d7e3e1d6b37532f98344a9849cde

    arm architecture (ARM)

    http://security.debian.org/pool/updates/main/f/freetype/libfreetype6-dev_2.3.7-2+lenny3_arm.deb
    Size/MD5 checksum: 686154 fbe32c7124ba2ce093b31f46736e002b
    http://security.debian.org/pool/updates/main/f/freetype/libfreetype6_2.3.7-2+lenny3_arm.deb
    Size/MD5 checksum: 357158 0d793d543a33cfa192098234c925d639
    http://security.debian.org/pool/updates/main/f/freetype/libfreetype6-udeb_2.3.7-2+lenny3_arm.udeb
    Size/MD5 checksum: 242196 1cfc9f7dc6a7cd0843aa234bab35b69e
    http://security.debian.org/pool/updates/main/f/freetype/freetype2-demos_2.3.7-2+lenny3_arm.deb
    Size/MD5 checksum: 205120 39ab4dfbc19c8a63affc493e0b5aaf2d

    armel architecture (ARM EABI)


    [continued in next message]

    --- SoupGate-Win32 v1.05
    * Origin: you cannot sedate... all the things you hate (1:229/2)
  • Who's Online

  • Recent Visitors

    • Bob Worm
      Mon Jun 8 20:15:00 2026
      from Wales, Uk via Telnet
    • Bob Worm
      Mon Jun 8 16:33:22 2026
      from Wales, Uk via Telnet
    • Bob Worm
      Mon Jun 8 14:11:46 2026
      from Wales, Uk via Telnet
    • Krenn
      Mon Jun 8 11:22:02 2026
      from Sydney, Nsw via Telnet
    • Bob Worm
      Mon Jun 8 08:26:26 2026
      from Wales, Uk via Telnet
    • Spearb0y
      Mon Jun 8 06:51:02 2026
      from Massachusetts via SSH
    • Krenn
      Mon Jun 8 05:45:38 2026
      from Sydney, Nsw via Telnet
    • Bob Worm
      Sun Jun 7 20:58:28 2026
      from Wales, Uk via Telnet
  • System Info

    Sysop: Keyop
    Location: Huddersfield, West Yorkshire, UK
    Users: 715
    Nodes: 16 (3 / 13)
    Uptime: 28:13:06
    Calls: 12,107
    Calls today: 7
    Files: 15,006
    Messages: 6,518,228

© >>> Magnum BBS <<<, 2026