summaryrefslogtreecommitdiff
path: root/docs/CHANGES
diff options
context:
space:
mode:
authorWerner Lemberg <wl@gnu.org>2017-04-26 09:16:45 +0200
committerWerner Lemberg <wl@gnu.org>2017-04-26 09:16:45 +0200
commit7752c68c50e651d76615de84db1e34f7ee1329b3 (patch)
treefe674e65145e6ff0cb3495ecb7c36319bcc87428 /docs/CHANGES
parent7fa5743ae67ec1e61e03f2bb86b0a662910261b8 (diff)
downloadfreetype2-7752c68c50e651d76615de84db1e34f7ee1329b3.tar.gz
Document CVE-2017-8105.
Diffstat (limited to 'docs/CHANGES')
-rw-r--r--docs/CHANGES5
1 files changed, 5 insertions, 0 deletions
diff --git a/docs/CHANGES b/docs/CHANGES
index c3c140232..8ad5dfae0 100644
--- a/docs/CHANGES
+++ b/docs/CHANGES
@@ -29,6 +29,11 @@ CHANGES BETWEEN 2.7.1 and 2.8
now scales the font linearly again (bug introduced in version
2.4.6).
+ - CVE-2017-8105: Older FreeType versions has an out-of-bounds write
+ caused by a heap-based buffer overflow related to the Type 1 fonts.
+
+ http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-8105
+
III. MISCELLANEOUS