[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [PATCH 0/1] fontconfig: CVE-2016-5384
From: |
Leo Famulari |
Subject: |
Re: [PATCH 0/1] fontconfig: CVE-2016-5384 |
Date: |
Mon, 8 Aug 2016 20:33:52 -0400 |
User-agent: |
Mutt/1.6.0 (2016-04-01) |
On Mon, Aug 08, 2016 at 07:17:50PM -0400, Mark H Weaver wrote:
> Leo Famulari <address@hidden> writes:
>
> > This patch uses a graft to apply the upstream fix to fontconfig for
> > CVE-2016-5384. I learned about the bug from a Debian security advisory:
> >
> > https://security-tracker.debian.org/tracker/CVE-2016-5384
> > https://www.debian.org/security/2016/dsa-3644
>
> Looks good to me. Please push.
Thanks for the review! Pushed as 6b5e654d