Debian Package Tracker
Register | Log in
Subscribe

freetype

Choose email to subscribe with

general
  • source: freetype (main)
  • version: 2.14.3+dfsg-2
  • maintainer: Hugh McMaster (DMD)
  • uploaders: Keith Packard [DMD] – Anthony Fok [DMD]
  • arch: all any
  • std-ver: 4.7.4
  • VCS: Git (Browse, QA)
versions [more versions can be listed by madison] [old versions available from snapshot.debian.org]
[pool directory]
  • o-o-stable: 2.10.4+dfsg-1+deb11u1
  • o-o-sec: 2.10.4+dfsg-1+deb11u2
  • oldstable: 2.12.1+dfsg-5+deb12u4
  • old-sec: 2.12.1+dfsg-5+deb12u4
  • stable: 2.13.3+dfsg-1+deb13u1
  • stable-sec: 2.13.3+dfsg-1+deb13u1
  • testing: 2.14.3+dfsg-2
  • unstable: 2.14.3+dfsg-2
versioned links
  • 2.10.4+dfsg-1+deb11u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 2.10.4+dfsg-1+deb11u2: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 2.12.1+dfsg-5+deb12u4: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 2.13.3+dfsg-1+deb13u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 2.14.3+dfsg-2: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
binaries
  • freetype2-demos
  • freetype2-doc
  • libfreetype-dev
  • libfreetype6 (2 bugs: 0, 2, 0, 0)
  • libfreetype6-udeb
action needed
1 security issue in sid high

There is 1 open security issue in sid.

1 important issue:
  • CVE-2026-95512: A flaw was found in FreeType, specifically within its CID font loader. A remote attacker could exploit this vulnerability by tricking a user into opening content that embeds or references a specially crafted CID-keyed font. This crafted font can cause repeated allocations and decryptions of subroutine data across multiple font dictionaries, leading to excessive memory and CPU consumption. This can result in a denial of service (DoS) for the application or service processing the font, potentially causing it to hang or terminate.
Created: 2026-10-02 Last update: 2026-10-04 22:00
1 security issue in forky high

There is 1 open security issue in forky.

1 important issue:
  • CVE-2026-95512: A flaw was found in FreeType, specifically within its CID font loader. A remote attacker could exploit this vulnerability by tricking a user into opening content that embeds or references a specially crafted CID-keyed font. This crafted font can cause repeated allocations and decryptions of subroutine data across multiple font dictionaries, leading to excessive memory and CPU consumption. This can result in a denial of service (DoS) for the application or service processing the font, potentially causing it to hang or terminate.
Created: 2026-10-02 Last update: 2026-10-04 22:00
1 low-priority security issue in trixie low

There is 1 open security issue in trixie.

1 issue left for the package maintainer to handle:
  • CVE-2026-95512: (needs triaging) A flaw was found in FreeType, specifically within its CID font loader. A remote attacker could exploit this vulnerability by tricking a user into opening content that embeds or references a specially crafted CID-keyed font. This crafted font can cause repeated allocations and decryptions of subroutine data across multiple font dictionaries, leading to excessive memory and CPU consumption. This can result in a denial of service (DoS) for the application or service processing the font, potentially causing it to hang or terminate.

You can find information about how to handle this issue in the security team's documentation.

Created: 2026-10-02 Last update: 2026-10-04 22:00
news
[rss feed]
  • [2026-07-31] freetype 2.14.3+dfsg-2 MIGRATED to testing (Debian testing watch)
  • [2026-07-24] Accepted freetype 2.14.3+dfsg-2 (source) into unstable (Hugh McMaster)
  • [2026-04-08] freetype 2.14.3+dfsg-1 MIGRATED to testing (Debian testing watch)
  • [2026-04-03] Accepted freetype 2.14.3+dfsg-1 (source) into unstable (Hugh McMaster)
  • [2026-03-19] Accepted freetype 2.13.3+dfsg-1+deb13u1 (source) into proposed-updates (Debian FTP Masters) (signed by: Moritz Mühlenhoff)
  • [2026-03-18] Accepted freetype 2.13.3+dfsg-1+deb13u1 (source) into stable-security (Debian FTP Masters) (signed by: Moritz Mühlenhoff)
  • [2026-03-14] freetype 2.14.2+dfsg-1 MIGRATED to testing (Debian testing watch)
  • [2026-03-07] Accepted freetype 2.14.2+dfsg-1 (source) into unstable (Hugh McMaster)
  • [2026-01-04] freetype 2.14.1+dfsg-2 MIGRATED to testing (Debian testing watch)
  • [2026-01-04] freetype 2.14.1+dfsg-2 MIGRATED to testing (Debian testing watch)
  • [2025-12-29] Accepted freetype 2.14.1+dfsg-2 (source) into unstable (Hugh McMaster)
  • [2025-12-26] Accepted freetype 2.14.1+dfsg-1 (source) into unstable (Hugh McMaster)
  • [2025-03-31] Accepted freetype 2.10.4+dfsg-1+deb11u2 (source) into oldstable-security (Adrian Bunk)
  • [2025-03-19] Accepted freetype 2.12.1+dfsg-5+deb12u4 (source) into proposed-updates (Debian FTP Masters) (signed by: Salvatore Bonaccorso)
  • [2025-03-17] Accepted freetype 2.12.1+dfsg-5+deb12u4 (source) into stable-security (Debian FTP Masters) (signed by: Salvatore Bonaccorso)
  • [2024-09-10] freetype 2.13.3+dfsg-1 MIGRATED to testing (Debian testing watch)
  • [2024-09-05] Accepted freetype 2.13.3+dfsg-1 (source) into unstable (Hugh McMaster)
  • [2024-03-24] Accepted freetype 2.12.1+dfsg-5+deb12u3 (source) into proposed-updates (Debian FTP Masters) (signed by: Hugh McMaster)
  • [2023-09-29] Accepted freetype 2.12.1+dfsg-5+deb12u2 (source amd64 all) into proposed-updates (Debian FTP Masters) (signed by: Hugh McMaster)
  • [2023-09-25] Accepted freetype 2.12.1+dfsg-5+deb12u1 (source amd64 all) into proposed-updates (Debian FTP Masters) (signed by: Hugh McMaster)
  • [2023-09-02] freetype 2.13.2+dfsg-1 MIGRATED to testing (Debian testing watch)
  • [2023-08-28] Accepted freetype 2.13.2+dfsg-1 (source) into unstable (Hugh McMaster)
  • [2023-08-22] freetype 2.13.1+dfsg-1 MIGRATED to testing (Debian testing watch)
  • [2023-08-17] Accepted freetype 2.13.1+dfsg-1 (source) into unstable (Hugh McMaster)
  • [2023-07-18] freetype 2.13.0+dfsg-1 MIGRATED to testing (Debian testing watch)
  • [2023-07-13] Accepted freetype 2.13.0+dfsg-1 (source) into unstable (Hugh McMaster)
  • [2023-05-02] freetype 2.12.1+dfsg-5 MIGRATED to testing (Debian testing watch)
  • [2023-04-27] Accepted freetype 2.12.1+dfsg-5 (source) into unstable (Hugh McMaster)
  • [2023-01-17] freetype 2.12.1+dfsg-4 MIGRATED to testing (Debian testing watch)
  • [2023-01-12] Accepted freetype 2.12.1+dfsg-4 (source) into unstable (Hugh McMaster)
  • 1
  • 2
bugs [bug history graph]
  • all: 3
  • RC: 0
  • I&N: 3
  • M&W: 0
  • F&P: 0
  • patch: 0
links
  • homepage
  • lintian
  • buildd: logs, reproducibility, cross
  • popcon
  • browse source code
  • other distros
  • security tracker
  • debian patches
  • debci
ubuntu Ubuntu logo [Information about Ubuntu for Debian Developers]
  • version: 2.14.3+dfsg-2
  • 6 bugs (1 patch)

Debian Package Tracker — Copyright 2013-2025 The Distro Tracker Developers
Report problems to the tracker.debian.org pseudo-package in the Debian BTS.
Documentation — Bugs — Git Repository — Contributing