We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
FreeType version 2.6, which webrender depends on on Linux had a heap buffer overflow has been found in the handling of embedded PNG bitmaps.
Since webrender links freetype statically (afaik) it would make sense to update the freetype dependency to fix this issue.
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15999
The text was updated successfully, but these errors were encountered:
I think it might make more sense to just make sure we always use the system freetype. i.e. drop the freetype-lib feature.
freetype-lib
Sorry, something went wrong.
No branches or pull requests
FreeType version 2.6, which webrender depends on on Linux had a heap buffer overflow has been found in the handling of embedded PNG bitmaps.
Since webrender links freetype statically (afaik) it would make sense to update the freetype dependency to fix this issue.
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-15999
The text was updated successfully, but these errors were encountered: