Security update for freetype2
This update for freetype2 fixes the following issues: Update to 2.13.2: * Some fields in the `FT_Outline` structure have been changed from signed to unsigned type, which better reflects the actual usage. It is also an additional means to protect against malformed input. * Rare double-free crashes in the cache subsystem have been fixed. * Excessive stack allocation in the autohinter has been fixed. * The B/W rasterizer has received a major upkeep that results in large performance improvements. The rendering speed has increased and even doubled for very complex glyphs.
02 / AFFECTED SOFTWARE
Affected packages
03 / CONNECTIONS
Connected vulnerabilities
04 / EVIDENCE
Source records
This update for freetype2 fixes the following issues: Update to 2.13.2: * Some fields in the `FT_Outline` structure have been changed from signed to unsigned type, which better reflects the actual usage. It is also an additional means to protect against malformed input. * Rare double-free crashes in the cache subsystem have been fixed. * Excessive stack allocation in the autohinter has been fixed. * The B/W rasterizer has received a major upkeep that results in large performance improvements. The rendering speed has increased and even doubled for very complex glyphs.
05 / REFERENCES
Further evidence
- https://bugzilla.suse.com/1035807
- https://bugzilla.suse.com/1036457
- https://bugzilla.suse.com/1079600
- https://bugzilla.suse.com/1198823
- https://bugzilla.suse.com/1198830
- https://bugzilla.suse.com/1198832
- https://bugzilla.suse.com/867620
- https://www.suse.com/security/cve/CVE-2014-2240
- https://www.suse.com/security/cve/CVE-2014-2241
- https://www.suse.com/security/cve/CVE-2017-8105
- https://www.suse.com/security/cve/CVE-2017-8287
- https://www.suse.com/security/cve/CVE-2022-27404
- https://www.suse.com/security/cve/CVE-2022-27405
- https://www.suse.com/security/cve/CVE-2022-27406
- https://www.suse.com/support/update/announcement/2025/suse-su-202520204-1/