Commit 7752c68c50e651d76615de84db1e34f7ee1329b3

Werner Lemberg 2017-04-26T09:16:45

Document CVE-2017-8105.

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
diff --git a/docs/CHANGES b/docs/CHANGES
index c3c1402..8ad5dfa 100644
--- a/docs/CHANGES
+++ b/docs/CHANGES
@@ -29,6 +29,11 @@ CHANGES BETWEEN 2.7.1 and 2.8
       now scales  the font linearly  again (bug introduced  in version
       2.4.6).
 
+    - CVE-2017-8105: Older FreeType versions has an out-of-bounds write
+      caused by a heap-based buffer overflow related to the Type 1 fonts.
+
+        http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-8105
+
 
   III. MISCELLANEOUS