Oval Definition:oval:org.mitre.oval:def:23645
Revision Date:2014-05-26Version:13
Title:ELSA-2011:0180: pango security update (Moderate)
Description:Heap-based buffer overflow in the pango_ft2_font_render_box_glyph function in pango/pangoft2-render.c in libpango in Pango 1.28.3 and earlier, when the FreeType2 backend is enabled, allows user-assisted remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted font file, related to the glyph box for an FT_Bitmap object.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2011-0020
ELSA-2011:0180-01
Platform(s):Oracle Linux 6
Product(s):evolution28-pango
pango
Definition Synopsis
  • Oracle Linux 6.x
  • AND rpm test
  • pango is earlier than 0:1.28.1-3.el6_0.3
  • OR pango-devel is earlier than 0:1.28.1-3.el6_0.3
  • BACK