From 13ec443eb50a5a07f97ec335bdc23995f782c83a Mon Sep 17 00:00:00 2001 From: Mikle Kolyada Date: Wed, 22 Jul 2015 18:46:29 +0300 Subject: GLSA 201507-21 --- glsa-201507-21.xml | 61 ++++++++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 61 insertions(+) create mode 100644 glsa-201507-21.xml (limited to 'glsa-201507-21.xml') diff --git a/glsa-201507-21.xml b/glsa-201507-21.xml new file mode 100644 index 00000000..e3e2d10d --- /dev/null +++ b/glsa-201507-21.xml @@ -0,0 +1,61 @@ + + + + libXfont: Multiple vulnerabilities + Multiple vulnerabilities have been found in libXfont, the worst of + which could result in execution of arbitrary code or Denial of Service. + + libXfont + July 22, 2015 + July 22, 2015: 1 + 543620 + remote + + + 1.4.9 + 1.5.1 + 1.5.1 + + + +

libXfont is an X11 font rasterisation library.

+
+ +

Multiple vulnerabilities have been discovered in libXfont. Please review + the CVE identifiers referenced below for details. +

+
+ +

A remote attacker could possibly execute arbitrary code or cause a + Denial of Service condition. +

+
+ +

There is no known workaround at this time.

+
+ +

All libXfont 1.4.x users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=x11-libs/libXfont-1.4.9" + + +

All libXfont 1.5.x users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=x11-libs/libXfont-1.5.1" + + +
+ + CVE-2015-1802 + CVE-2015-1803 + CVE-2015-1804 + + + BlueKnight + + Zlogene +
-- cgit v1.2.3-65-gdbad