diff --git a/CVE-2018-19876.patch b/CVE-2018-19876.patch deleted file mode 100644 index 484a07c0ca0b63039c216b7bfc4aa995169800ca..0000000000000000000000000000000000000000 --- a/CVE-2018-19876.patch +++ /dev/null @@ -1,30 +0,0 @@ -From 90e85c2493fdfa3551f202ff10282463f1e36645 Mon Sep 17 00:00:00 2001 -From: Carlos Garcia Campos -Date: Thu, 17 Sep 2020 15:55:42 -0400 -Subject: [PATCH] ft: Use FT_Done_MM_Var instead of free when available in - cairo_ft_apply_variations - -Fixes a crash when using freetype >= 2.9 ---- - src/cairo-ft-font.c | 4 ++++ - 1 file changed, 4 insertions(+) - -diff --git a/src/cairo-ft-font.c b/src/cairo-ft-font.c -index 325dd61..b63258d 100644 ---- a/src/cairo-ft-font.c -+++ b/src/cairo-ft-font.c -@@ -2393,7 +2393,11 @@ skip: - done: - free (coords); - free (current_coords); -+#if HAVE_FT_DONE_MM_VAR -+ FT_Done_MM_Var (face->glyph->library, ft_mm_var); -+#else - free (ft_mm_var); -+#endif - } - } - --- -2.23.0 - diff --git a/cairo-1.15.14.tar.xz b/cairo-1.15.14.tar.xz deleted file mode 100644 index 91138102302947f2258079cf60193edc80314a3e..0000000000000000000000000000000000000000 Binary files a/cairo-1.15.14.tar.xz and /dev/null differ diff --git a/cairo.spec b/cairo.spec index 5dd7ebd59e7cfac24d88083a8451bd7ed3c13c98..b85aaca46b0d451dd68acdff60596eee3cd1d200 100644 --- a/cairo.spec +++ b/cairo.spec @@ -2,7 +2,7 @@ Name: cairo Version: 1.16.0 -Release: 1 +Release: 2 Summary: A 2D graphics library License: LGPLv2 or MPLv1.1 URL: http://cairographics.org @@ -83,6 +83,9 @@ find $RPM_BUILD_ROOT -name '*.la' -delete %{_bindir}/cairo-trace %changelog +* Thu Oct 15 2020 yanglu - 1.16.0-2 +- remove cairo-1.15.14.tar.xz CVE-2018-19876 + * Wed Oct 14 2020 yanglu - 1.16.0-1 - Version upgrade