summaryrefslogtreecommitdiff
AgeCommit message (Expand)AuthorFilesLines
2015-03-17libXfont 1.4.9libXfont-1.4.9libXfont-1.4-branchAlan Coopersmith1-1/+1
2015-03-17bdfReadCharacters: ensure metrics fit into xCharInfo struct [CVE-2015-1804]Alan Coopersmith1-2/+24
2015-03-17bdfReadCharacters: bailout if a char's bitmap cannot be read [CVE-2015-1803]Alan Coopersmith1-1/+4
2015-03-17bdfReadProperties: property count needs range check [CVE-2015-1802]Alan Coopersmith1-1/+3
2015-03-17Set close-on-exec for font file I/O.Christos Zoulas2-6/+11
2014-05-15libXfont 1.4.8libXfont-1.4.8Alan Coopersmith1-1/+1
2014-05-13CVE-2014-0210: unvalidated length fields in fs_read_list_info()Alan Coopersmith1-0/+54
2014-05-13CVE-2014-0210: unvalidated length fields in fs_read_list()Alan Coopersmith1-0/+15
2014-05-13CVE-2014-0210: unvalidated length fields in fs_read_glyphs()Alan Coopersmith1-1/+28
2014-05-13CVE-2014-0210: unvalidated length fields in fs_read_extent_info()Alan Coopersmith1-0/+10
2014-05-13CVE-2014-0211: integer overflow in fs_alloc_glyphs()Alan Coopersmith1-1/+6
2014-05-13CVE-2014-0211: integer overflow in fs_read_extent_info()Alan Coopersmith1-1/+11
2014-05-13CVE-2014-0210: unvalidated length fields in fs_read_query_info()Alan Coopersmith2-0/+46
2014-05-13CVE-2014-0211: Integer overflow in fs_get_reply/_fs_start_readAlan Coopersmith1-0/+18
2014-05-13CVE-2014-0210: unvalidated lengths when reading replies from font serverAlan Coopersmith1-6/+38
2014-05-13CVE-2014-0210: unvalidated length in _fs_recv_conn_setup()Alan Coopersmith1-2/+18
2014-05-13CVE-2014-0209: integer overflow of realloc() size in lexAlias()Alan Coopersmith1-0/+4
2014-05-13CVE-2014-0209: integer overflow of realloc() size in FontFileAddEntry()Alan Coopersmith1-0/+5
2014-05-13Clean up warnings when src/fc is built with -DDEBUGAlan Coopersmith1-3/+1
2014-05-13Allow enabling src/fc DEBUG helpers via CPPFLAGSAlan Coopersmith1-1/+2
2014-04-21Require fontsproto < 2.1.3 for matching function prototypesAlan Coopersmith1-1/+1
2014-04-21Check if pointer returned by BufFileCreate is NULL before writing to itAlan Coopersmith1-2/+4
2014-04-19Fix buffer read overrunPeter Harris1-1/+1
2014-01-23Add note to README declaring snf fonts to be deprecatedAlan Coopersmith1-1/+2
2014-01-23Add notes to README about various font formats & configure optionsAlan Coopersmith1-0/+58
2014-01-23Correct comment in configure.ac about scalable font supportAlan Coopersmith1-3/+2
2014-01-08Remove redundant setting of 'len' in SPropRecValList_add_by_font_capAlan Coopersmith1-1/+0
2014-01-08Initialize (unused) data field in fsListCataloguesReq before sending it.Alan Coopersmith1-0/+1
2014-01-08Remove redundant declaration of FontFileStartListFonts()Alan Coopersmith1-5/+0
2014-01-08Fix unused variable 'dir' warningsAlan Coopersmith2-7/+0
2014-01-07libXfont 1.4.7libXfont-1.4.7Alan Coopersmith1-1/+1
2013-12-30Limit additional sscanf strings to fit buffer sizesAlan Coopersmith1-3/+11
2013-12-30CVE-2013-6462: unlimited sscanf overflows stack buffer in bdfReadCharacters()Alan Coopersmith1-1/+1
2013-12-30Add AC_USE_SYSTEM_EXTENSIONS to expose non-standard extensionsAlan Coopersmith1-0/+5
2013-12-13Don't leak old allocation if realloc fails to enlarge itAlan Coopersmith2-11/+18
2013-11-22Make serverGeneration unsignedJulien Cristau1-1/+1
2013-11-01Replace malloc(strlen)+strcpy/strcat calls with strdupAlan Coopersmith3-12/+5
2013-11-01xstrdup -> strdupAlan Coopersmith3-31/+2
2013-07-21libXfont 1.4.6libXfont-1.4.6Alan Coopersmith1-1/+1
2013-06-24Require ANSI C89 pre-processor, drop pre-C89 token pasting supportAlan Coopersmith1-5/+0
2013-06-02Protect config.h inclusion with ifdef HAVE_CONFIG_H, like usual.Thomas Klausner1-0/+2
2013-01-16Replace deprecated Automake INCLUDES variable with AM_CPPFLAGSAlan Coopersmith7-9/+9
2013-01-15autogen.sh: Implement GNOME Build APIColin Walters1-1/+3
2013-01-15configure: Remove AM_MAINTAINER_MODEAdam Jackson1-1/+0
2012-12-07catalogue: Fix obvious thinkoAdam Jackson1-1/+1
2012-10-29Omit catalogue support on systems without symlinksYaakov Selkowitz3-1/+7
2012-08-24If socket is interrupted with signal EINTR, re-attempt read.Arvind Umrao1-2/+5
2012-03-02libXfont 1.4.5libXfont-1.4.5Alan Coopersmith1-1/+1
2011-11-11Use * precision notation instead of computing sprintf format stringsAlan Coopersmith1-11/+5
2011-11-11Fix printf warnings about incorrect argument typesAlan Coopersmith5-27/+41