Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 448666 - app-text/texlive-2011 depends on media-libs/freetype:1, which has multiple vulnerabilities
Summary: app-text/texlive-2011 depends on media-libs/freetype:1, which has multiple vu...
Status: RESOLVED DUPLICATE of bug 412499
Alias: None
Product: Gentoo Linux
Classification: Unclassified
Component: Current packages (show other bugs)
Hardware: All Linux
: Normal normal (vote)
Assignee: Gentoo Linux bug wranglers
URL:
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2012-12-26 14:39 UTC by Paul McDermott
Modified: 2012-12-27 00:41 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Paul McDermott 2012-12-26 14:39:43 UTC
app-text/texlive-2011 pulls in media-libs/freetype:1. media-libs/freetype:1 is subject to the following GLSAs: 201201-09 and 201204-04

Reproducible: Always

Steps to Reproduce:
1.emerge -avD app-text/texlive
2.
3.
Actual Results:  
texlive pulls in media-libs/freetype:1

Expected Results:  
Installing texlive shouldn't pull in vulnerable packages
Comment 1 Jeroen Roovers (RETIRED) gentoo-dev 2012-12-27 00:41:25 UTC
You could always set USE=-truetype. Or wait for 2012 to go stable.

*** This bug has been marked as a duplicate of bug 412499 ***