fix mesa
This commit is contained in:
+43
@@ -0,0 +1,43 @@
|
||||
From 8dc3b629434ce256f8e6a584c5853ae9b4230c33 Mon Sep 17 00:00:00 2001
|
||||
From: Adam Jackson <ajax@redhat.com>
|
||||
Date: Wed, 31 Oct 2012 16:06:51 -0400
|
||||
Subject: [PATCH 1/2] xlib: Don't crash when swapping a 0-sized glyph
|
||||
|
||||
malloc(0) needn't return NULL, and on glibc, doesn't. Then we encounter
|
||||
a loop of the form do { ... } while (--c), which doesn't do quite what
|
||||
you were hoping for when c is initially 0.
|
||||
|
||||
Since there's nothing to swap in this case, just bomb out.
|
||||
|
||||
Signed-off-by: Adam Jackson <ajax@redhat.com>
|
||||
---
|
||||
src/cairo-xlib-render-compositor.c | 6 ++++++
|
||||
1 file changed, 6 insertions(+)
|
||||
|
||||
diff --git a/src/cairo-xlib-render-compositor.c b/src/cairo-xlib-render-compositor.c
|
||||
index 74c43e9..e38a659 100644
|
||||
--- a/src/cairo-xlib-render-compositor.c
|
||||
+++ b/src/cairo-xlib-render-compositor.c
|
||||
@@ -1251,6 +1251,9 @@ _cairo_xlib_surface_add_glyph (cairo_xlib_display_t *display,
|
||||
unsigned char *d;
|
||||
unsigned char *new, *n;
|
||||
|
||||
+ if (c == 0)
|
||||
+ break;
|
||||
+
|
||||
new = malloc (c);
|
||||
if (!new) {
|
||||
status = _cairo_error (CAIRO_STATUS_NO_MEMORY);
|
||||
@@ -1276,6 +1279,9 @@ _cairo_xlib_surface_add_glyph (cairo_xlib_display_t *display,
|
||||
const uint32_t *d;
|
||||
uint32_t *new, *n;
|
||||
|
||||
+ if (c == 0)
|
||||
+ break;
|
||||
+
|
||||
new = malloc (4 * c);
|
||||
if (unlikely (new == NULL)) {
|
||||
status = _cairo_error (CAIRO_STATUS_NO_MEMORY);
|
||||
--
|
||||
1.7.12.1
|
||||
|
||||
+43
@@ -0,0 +1,43 @@
|
||||
From 4cad9bf9f0744efe17f1b70548cd2059df071e81 Mon Sep 17 00:00:00 2001
|
||||
From: Adam Jackson <ajax@redhat.com>
|
||||
Date: Wed, 31 Oct 2012 16:12:58 -0400
|
||||
Subject: [PATCH 2/2] xcb: Don't crash when swapping a 0-sized glyph
|
||||
|
||||
malloc(0) needn't return NULL, and on glibc, doesn't. Then we encounter
|
||||
a loop of the form do { ... } while (--c), which doesn't do quite what
|
||||
you were hoping for when c is initially 0.
|
||||
|
||||
Since there's nothing to swap in this case, just bomb out.
|
||||
|
||||
Signed-off-by: Adam Jackson <ajax@redhat.com>
|
||||
---
|
||||
src/cairo-xcb-surface-render.c | 6 ++++++
|
||||
1 file changed, 6 insertions(+)
|
||||
|
||||
diff --git a/src/cairo-xcb-surface-render.c b/src/cairo-xcb-surface-render.c
|
||||
index 27ed113..16d1ef8 100644
|
||||
--- a/src/cairo-xcb-surface-render.c
|
||||
+++ b/src/cairo-xcb-surface-render.c
|
||||
@@ -4461,6 +4461,9 @@ _cairo_xcb_surface_add_glyph (cairo_xcb_connection_t *connection,
|
||||
const uint8_t *d;
|
||||
uint8_t *new, *n;
|
||||
|
||||
+ if (c == 0)
|
||||
+ break;
|
||||
+
|
||||
new = malloc (c);
|
||||
if (unlikely (new == NULL)) {
|
||||
status = _cairo_error (CAIRO_STATUS_NO_MEMORY);
|
||||
@@ -4489,6 +4492,9 @@ _cairo_xcb_surface_add_glyph (cairo_xcb_connection_t *connection,
|
||||
const uint32_t *d;
|
||||
uint32_t *new, *n;
|
||||
|
||||
+ if (c == 0)
|
||||
+ break;
|
||||
+
|
||||
new = malloc (4 * c);
|
||||
if (unlikely (new == NULL)) {
|
||||
status = _cairo_error (CAIRO_STATUS_NO_MEMORY);
|
||||
--
|
||||
1.7.12.1
|
||||
|
||||
@@ -0,0 +1,33 @@
|
||||
From 2de69581c28bf115852037ca41eba13cb7335976 Mon Sep 17 00:00:00 2001
|
||||
From: Massimo Valentini <mvalentini@src.gnome.org>
|
||||
Date: Sun, 19 Oct 2014 09:19:10 +0200
|
||||
Subject: tor-scan-converter: can't do_fullrow when intersection in row +
|
||||
0.5subrow
|
||||
|
||||
the active edges list must be left sorted at the next possible use
|
||||
and since full_row does not deal with intersections it is not usable
|
||||
when there is an intersection in the top half of the next row first
|
||||
subrow
|
||||
|
||||
Reported-and-tested-by: Matthew Leach
|
||||
Bugzilla: https://bugs.freedesktop.org/show_bug.cgi?id=85151
|
||||
Reviewed-by: Chris Wilson <chris@chris-wilson.co.uk>
|
||||
|
||||
diff --git a/src/cairo-tor-scan-converter.c b/src/cairo-tor-scan-converter.c
|
||||
index 4adcafb..14922d0 100644
|
||||
--- a/src/cairo-tor-scan-converter.c
|
||||
+++ b/src/cairo-tor-scan-converter.c
|
||||
@@ -1167,8 +1167,8 @@ can_do_full_row (struct active_list *active)
|
||||
|
||||
if (e->dy) {
|
||||
struct quorem x = e->x;
|
||||
- x.quo += e->dxdy_full.quo - e->dxdy.quo/2;
|
||||
- x.rem += e->dxdy_full.rem - e->dxdy.rem/2;
|
||||
+ x.quo += e->dxdy_full.quo;
|
||||
+ x.rem += e->dxdy_full.rem;
|
||||
if (x.rem < 0) {
|
||||
x.quo--;
|
||||
x.rem += e->dy;
|
||||
--
|
||||
cgit v0.10.2
|
||||
|
||||
Reference in New Issue
Block a user