harfbuzz 1.0.1-1ubuntu0.1 source package in Ubuntu

Changelog

harfbuzz (1.0.1-1ubuntu0.1) xenial-security; urgency=medium

  * SECURITY UPDATE: memory access issue in hb-ot-layout-gpos-table.hh
    - debian/patches/CVE-2015-8947.patch: call check_struct earlier in
      src/hb-ot-layout-gpos-table.hh.
    - CVE-2015-8947
  * SECURITY UPDATE: buffer over-read via inverted length check
    - debian/patches/CVE-2016-2052.patch: fix hmtx wrong table length check
      in src/hb-ot-font.cc.
    - CVE-2016-2052

 -- Marc Deslauriers <email address hidden>  Wed, 17 Aug 2016 11:14:40 -0400

Upload details

Uploaded by:
Marc Deslauriers on 2016-08-17
Uploaded to:
Xenial
Original maintainer:
Ubuntu Developers
Architectures:
any all
Section:
libs
Urgency:
Medium Urgency

See full publishing history Publishing

Series Pocket Published Component Section
Xenial updates on 2016-08-24 main misc
Xenial security on 2016-08-24 main misc

Downloads

File Size SHA-256 Checksum
harfbuzz_1.0.1.orig.tar.bz2 1.2 MiB 32a1a7ad584a2f2cfba5c1d234d046c0521e86e7a21d403e15e89aa509ef0ea8
harfbuzz_1.0.1-1ubuntu0.1.debian.tar.xz 8.7 KiB 5b8b03fa2a6ed98e0e90b2d279e6d477c8d692b8ed772e35cab1f4cb51a20d10
harfbuzz_1.0.1-1ubuntu0.1.dsc 2.8 KiB 87239e2ef7544ba3d73ea2912d6243a3204e879b20ffd1b97af5f6ab592cb242

View changes file

Binary packages built by this source

gir1.2-harfbuzz-0.0: OpenType text shaping engine (GObject introspection data)

 HarfBuzz is an implementation of the OpenType Layout engine (aka layout
 engine) and the script-specific logic (aka shaping engine).
 .
 This package contains introspection data for the GObject bindings library.

gir1.2-harfbuzz-0.0-dbgsym: debug symbols for package gir1.2-harfbuzz-0.0

 HarfBuzz is an implementation of the OpenType Layout engine (aka layout
 engine) and the script-specific logic (aka shaping engine).
 .
 This package contains introspection data for the GObject bindings library.

libharfbuzz-bin: OpenType text shaping engine (utility)

 HarfBuzz is an implementation of the OpenType Layout engine (aka layout
 engine) and the script-specific logic (aka shaping engine).
 .
 This package contains a command line interface for the HarfBuzz library.

libharfbuzz-bin-dbgsym: debug symbols for package libharfbuzz-bin

 HarfBuzz is an implementation of the OpenType Layout engine (aka layout
 engine) and the script-specific logic (aka shaping engine).
 .
 This package contains a command line interface for the HarfBuzz library.

libharfbuzz-dev: Development files for OpenType text shaping engine

 HarfBuzz is an implementation of the OpenType Layout engine (aka layout
 engine) and the script-specific logic (aka shaping engine).
 .
 This package contains the header files and static libraries for the
 HarfBuzz library.

libharfbuzz-dev-dbgsym: debug symbols for package libharfbuzz-dev

 HarfBuzz is an implementation of the OpenType Layout engine (aka layout
 engine) and the script-specific logic (aka shaping engine).
 .
 This package contains the header files and static libraries for the
 HarfBuzz library.

libharfbuzz-doc: Documentation files for the HarfBuzz library

 HarfBuzz is an implementation of the OpenType Layout engine (aka layout
 engine) and the script-specific logic (aka shaping engine).
 .
 This package contains the HTML documentation for the HarfBuzz library.

libharfbuzz-gobject0: OpenType text shaping engine ICU backend (GObject library)

 HarfBuzz is an implementation of the OpenType Layout engine (aka layout
 engine) and the script-specific logic (aka shaping engine).
 .
 This package contains the GObject library, providing wrapper GObject type
 bindings for all HarfBuzz objects and enums.

libharfbuzz-gobject0-dbgsym: debug symbols for package libharfbuzz-gobject0

 HarfBuzz is an implementation of the OpenType Layout engine (aka layout
 engine) and the script-specific logic (aka shaping engine).
 .
 This package contains the GObject library, providing wrapper GObject type
 bindings for all HarfBuzz objects and enums.

libharfbuzz-icu0: OpenType text shaping engine ICU backend

 HarfBuzz is an implementation of the OpenType Layout engine (aka layout
 engine) and the script-specific logic (aka shaping engine).
 .
 This package contains the ICU backend.

libharfbuzz-icu0-dbgsym: debug symbols for package libharfbuzz-icu0

 HarfBuzz is an implementation of the OpenType Layout engine (aka layout
 engine) and the script-specific logic (aka shaping engine).
 .
 This package contains the ICU backend.

libharfbuzz0-udeb: OpenType text shaping engine

 HarfBuzz is an implementation of the OpenType Layout engine (aka layout
 engine) and the script-specific logic (aka shaping engine).

libharfbuzz0-udeb-dbgsym: debug symbols for package libharfbuzz0-udeb

 HarfBuzz is an implementation of the OpenType Layout engine (aka layout
 engine) and the script-specific logic (aka shaping engine).

libharfbuzz0b: OpenType text shaping engine (shared library)

 HarfBuzz is an implementation of the OpenType Layout engine (aka layout
 engine) and the script-specific logic (aka shaping engine).
 .
 This package contains the shared libraries.

libharfbuzz0b-dbg: OpenType text shaping engine

 HarfBuzz is an implementation of the OpenType Layout engine (aka layout
 engine) and the script-specific logic (aka shaping engine).
 .
 This package contains detached debugging symbols for libharfbuzz.

libharfbuzz0b-dbgsym: debug symbols for package libharfbuzz0b

 HarfBuzz is an implementation of the OpenType Layout engine (aka layout
 engine) and the script-specific logic (aka shaping engine).
 .
 This package contains the shared libraries.