You are here
Home > Preporuke > Sigurnosni nedostatak programskog paketa cairo

Sigurnosni nedostatak programskog paketa cairo

  • Detalji os-a: WN7
  • Važnost: IMP
  • Operativni sustavi: L
  • Kategorije: LFE

——————————————————————————–
Fedora Update Notification
FEDORA-2018-3a195026f5
2018-12-10 02:31:09.366310
——————————————————————————–

Name : cairo
Product : Fedora 29
Version : 1.16.0
Release : 3.fc29
URL : http://cairographics.org
Summary : A 2D graphics library
Description :
Cairo is a 2D graphics library designed to provide high-quality display
and print output. Currently supported output targets include the X Window
System, in-memory image buffers, and image files (PDF, PostScript, and SVG).

Cairo is designed to produce consistent output on all output media while
taking advantage of display hardware acceleration when available.

——————————————————————————–
Update Information:

This update lowers amount of color artefacts around glyphs when subpixel
rendering is enabled for text by using freetype’s default LCD filter. It also
fixes a crash caused by using of wrong function for freeing of memory
(CVE-2018-19876).
——————————————————————————–
ChangeLog:

* Fri Dec 7 2018 Marek Kasik <mkasik@redhat.com> – 1.16.0-3
– Use FT_Done_MM_Var instead of free when available in
– cairo_ft_apply_variations
* Fri Dec 7 2018 Marek Kasik <mkasik@redhat.com> – 1.16.0-2
– Set default LCD filter to FreeType’s default
– Resolves: #1645763
* Mon Oct 22 2018 Kalev Lember <klember@redhat.com> – 1.16.0-1
– Update to 1.16.0
——————————————————————————–
References:

[ 1 ] Bug #1645763 – ClearType enablement: strong color fringing that is not present in vanilla build from freetype git
https://bugzilla.redhat.com/show_bug.cgi?id=1645763
——————————————————————————–

This update can be installed with the “dnf” update program. Use
su -c ‘dnf upgrade –advisory FEDORA-2018-3a195026f5’ at the command
line. For more information, refer to the dnf documentation available at
http://dnf.readthedocs.io/en/latest/command_ref.html#upgrade-command-label

All packages are signed with the Fedora Project GPG key. More details on the
GPG keys used by the Fedora Project can be found at
https://fedoraproject.org/keys
——————————————————————————–
_______________________________________________
package-announce mailing list — package-announce@lists.fedoraproject.org
To unsubscribe send an email to package-announce-leave@lists.fedoraproject.org
Fedora Code of Conduct: https://getfedora.org/code-of-conduct.html
List Guidelines: https://fedoraproject.org/wiki/Mailing_list_guidelines
List Archives: https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org

AutorZvonimir Bosnjak
Cert idNCERT-REF-2018-12-0001-ADV
CveCERT-CVE-DUMMY
ID izvornikaCERT-ORIGID-DUMMY
ProizvodCERT-DUMMY-PRODUCT
IzvorAdobe
Top
More in Preporuke
Sigurnosni nedostaci programskog paketa Chromium

Otkriveni su sigurnosni nedostaci u programskom paketu Chromium za operacijski sustav openSUSE. Otkriveni nedostaci potencijalnim napadačima omogućuju izvršavanje proizvoljnog programskog...

Close