freetype
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [ft] FreeType 2.4.1 has been released


From: Michiel Kamermans
Subject: Re: [ft] FreeType 2.4.1 has been released
Date: Fri, 06 Aug 2010 11:57:10 -0700
User-agent: Mozilla/5.0 (Windows; U; Windows NT 6.0; en-GB; rv:1.9.1.5) Gecko/20091204 Thunderbird/3.0

Hi,

out of curiosity, has Apple contacted the FreeType dev group concerning http://www.vupen.com/english/advisories/2010/2018 ("FreeType Compact Font Format Two Buffer Overflow Vulnerabilities")? Even if it's not a serious problem on anything that isn't iOS, a problem with opcode parsing might also lead to the incorrect execution of opcode-based CFF glyph rendering; it would be nice to know where it's going wrong, so that normal fonts (i.e., not created specifically to exploit the problem) that make use of the problematic opcode patterns can be identified.

- Mike "Pomax" Kamermans
nihongoresources.com



reply via email to

[Prev in Thread] Current Thread [Next in Thread]