SUSE-SU-2025:20204-1
Dashboard / Vulnerabilities / SUSE-SU-2025:20204-1
SUSE-SU-2025:20204-1
Summary: Security update for freetype2
Details: This update for freetype2 fixes the following issues: Update to 2.13.2: * Some fields in the `FT_Outline` structure have been changed from signed to unsigned type, which better reflects the actual usage. It is also an additional means to protect against malformed input. * Rare double-free crashes in the cache subsystem have been fixed. * Excessive stack allocation in the autohinter has been fixed. * The B/W rasterizer has received a major upkeep that results in large performance improvements. The rendering speed has increased and even doubled for very complex glyphs.
References: https://www.suse.com/support/update/announcement/2025/suse-su-202520204-1/, https://bugzilla.suse.com/1035807, https://bugzilla.suse.com/1036457, https://bugzilla.suse.com/1079600, https://bugzilla.suse.com/1198823, https://bugzilla.suse.com/1198830, https://bugzilla.suse.com/1198832, https://bugzilla.suse.com/867620, https://www.suse.com/security/cve/CVE-2014-2240, https://www.suse.com/security/cve/CVE-2014-2241, https://www.suse.com/security/cve/CVE-2017-8105, https://www.suse.com/security/cve/CVE-2017-8287, https://www.suse.com/security/cve/CVE-2022-27404, https://www.suse.com/security/cve/CVE-2022-27405, https://www.suse.com/security/cve/CVE-2022-27406
Affected packages
Package
Name: freetype2
Purl: pkg:rpm/suse/freetype2&distro=SUSE%20Linux%20Micro%206.0
Affected ranges
Type: ECOSYSTEM
Events:
