Oval Definition:oval:org.opensuse.security:def:20091194
Revision Date:2022-05-20Version:1
Title:CVE-2009-1194
Description:

Integer overflow in the pango_glyph_string_set_size function in pango/glyphstring.c in Pango before 1.24 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long glyph string that triggers a heap-based buffer overflow, as demonstrated by a long document.location value in Firefox.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2009-1194
Mitre CVE-2009-1194
SUSE CVE-2009-1194
SUSE-SA:2009:039
SUSE-SA:2009:039
SUSE-SA:2009:042
SUSE-SA:2009:042
SUSE-SR:2009:012
SUSE-SR:2009:012
SUSE-SR:2010:004
SUSE-SR:2010:004
Platform(s):Open Enterprise Server
openSUSE 10.3
openSUSE 11.0
openSUSE 11.1
SUSE CORE 9 for AMD64 and Intel EM64T
SUSE Linux Enterprise Desktop 10 SP3 for AMD64 and Intel EM64T
SUSE Linux Enterprise Desktop 10 SP3 for x86
SUSE Linux Enterprise Desktop 11 GA
SUSE Linux Enterprise SDK 10 SP2
SUSE Linux Enterprise SDK 10 SP3
SUSE Linux Enterprise SDK 11 GA
SUSE Linux Enterprise Server 10 SP3
SUSE Linux Enterprise Server 11
SUSE Linux Enterprise Server 11 GA
SUSE Linux Enterprise Server 11 SP1
SUSE Linux Enterprise Server for SAP 10 SP2
SUSE Linux Enterprise Server for SAP 10 SP3
SUSE Linux Enterprise Server for SAP Applications 11
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Server 11 is installed
  • AND Package Information
  • pango-1.22.1-3.18.1 is installed
  • OR pango-32bit-1.22.1-3.18.1 is installed
  • OR pango-doc-1.22.1-3.18.1 is installed
  • OR pango-x86-1.22.1-3.17.3 is installed
  • Definition Synopsis
  • Release Information
  • sles10-sp3 is installed
  • firefox3-pango-32bit less than 1.14.5-0.10.1
  • OR firefox3-pango less than 1.14.5-0.10.1
  • OR
  • sles10-sp3-sdk is installed
  • firefox3-pango-devel less than 1.14.5-0.10.1
  • OR firefox3-pango-doc less than 1.14.5-0.10.1
  • OR Package Information
  • sles10-sp2-sap is installed
  • pango-32bit less than 1.10.2-23.8.1
  • OR pango-devel less than 1.10.2-23.8.1
  • OR pango-doc less than 1.10.2-23.8.1
  • OR pango less than 1.10.2-23.8.1
  • OR
  • sles10-sp2-sdk is installed
  • AND pango-devel-64bit less than 1.10.2-23.8.1
  • OR Package Information
  • sles10-sp3 is installed
  • pango-32bit less than 1.10.2-23.8.1
  • OR pango-64bit less than 1.10.2-23.8.1
  • OR pango-devel-64bit less than 1.10.2-23.8.1
  • OR pango-devel less than 1.10.2-23.8.1
  • OR pango-doc less than 1.10.2-23.8.1
  • OR pango-x86 less than 1.10.2-23.8.1
  • OR pango less than 1.10.2-23.8.1
  • OR
  • sles10-sp3-sdk is installed
  • AND pango-devel-64bit less than 1.10.2-23.8.1
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 is installed
  • AND
  • MozillaFirefox-3.0.12-0.1 is installed
  • OR MozillaFirefox-branding-SLED-3.5-1.1 is installed
  • OR MozillaFirefox-translations-3.0.12-0.1 is installed
  • OR gconf2-2.24.0-7 is installed
  • OR gconf2-32bit-2.24.0-7 is installed
  • OR gconf2-x86-2.24.0-7 is installed
  • OR libfreebl3-3.12.3.1-1.2 is installed
  • OR libfreebl3-32bit-3.12.3.1-1.2 is installed
  • OR libfreebl3-x86-3.12.3.1-1.2 is installed
  • OR libidl-0.8.11-2 is installed
  • OR libidl-32bit-0.8.11-2 is installed
  • OR libidl-x86-0.8.11-2 is installed
  • OR mozilla-nspr-4.8-1.3 is installed
  • OR mozilla-nspr-32bit-4.8-1.3 is installed
  • OR mozilla-nspr-x86-4.8-1.3 is installed
  • OR mozilla-nss-3.12.3.1-1.2 is installed
  • OR mozilla-nss-32bit-3.12.3.1-1.2 is installed
  • OR mozilla-nss-tools-3.12.3.1-1.2 is installed
  • OR mozilla-nss-x86-3.12.3.1-1.2 is installed
  • OR mozilla-xulrunner190-1.9.0.12-1.1 is installed
  • OR mozilla-xulrunner190-32bit-1.9.0.12-1.1 is installed
  • OR mozilla-xulrunner190-gnomevfs-1.9.0.12-1.1 is installed
  • OR mozilla-xulrunner190-translations-1.9.0.12-1.1 is installed
  • OR mozilla-xulrunner190-x86-1.9.0.10-1.1 is installed
  • OR mozilla-xulrunner191-1.9.1.11-0.1 is installed
  • OR mozilla-xulrunner191-32bit-1.9.1.11-0.1 is installed
  • OR mozilla-xulrunner191-gnomevfs-1.9.1.11-0.1 is installed
  • OR mozilla-xulrunner191-translations-1.9.1.11-0.1 is installed
  • OR mozilla-xulrunner191-x86-1.9.1.11-0.1 is installed
  • OR mozilla-xulrunner192-1.9.2.12-0.6 is installed
  • OR mozilla-xulrunner192-32bit-1.9.2.12-0.6 is installed
  • OR mozilla-xulrunner192-gnome-1.9.2.12-0.6 is installed
  • OR mozilla-xulrunner192-translations-1.9.2.12-0.6 is installed
  • OR mozilla-xulrunner192-x86-1.9.2.12-0.6 is installed
  • OR orbit2-2.14.16-2 is installed
  • OR orbit2-32bit-2.14.16-2 is installed
  • OR orbit2-x86-2.14.16-2 is installed
  • OR pango-1.22.1-3.17 is installed
  • OR pango-32bit-1.22.1-3.17 is installed
  • OR pango-doc-1.22.1-3.17 is installed
  • OR pango-x86-1.22.1-3.17 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP1 is installed
  • AND
  • mozilla-xulrunner190-1.9.0.19-0.1 is installed
  • OR mozilla-xulrunner190-32bit-1.9.0.19-0.1 is installed
  • OR mozilla-xulrunner190-gnomevfs-1.9.0.19-0.1 is installed
  • OR mozilla-xulrunner190-translations-1.9.0.19-0.1 is installed
  • OR mozilla-xulrunner190-x86-1.9.0.19-0.1 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 SP1 is installed
  • AND
  • mozilla-xulrunner190-1.9.0.19-0.1.1 is installed
  • OR mozilla-xulrunner190-32bit-1.9.0.19-0.1.1 is installed
  • OR mozilla-xulrunner190-gnomevfs-1.9.0.19-0.1.1 is installed
  • OR mozilla-xulrunner190-translations-1.9.0.19-0.1.1 is installed
  • OR mozilla-xulrunner190-x86-1.9.0.19-0.1.1 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 is installed
  • OR SUSE Linux Enterprise Server for SAP Applications 11 is installed
  • AND
  • MozillaFirefox-3.0.12-0.1.2 is installed
  • OR MozillaFirefox-branding-SLED-3.5-1.1.5 is installed
  • OR MozillaFirefox-translations-3.0.12-0.1.2 is installed
  • OR gconf2-2.24.0-7.5 is installed
  • OR gconf2-32bit-2.24.0-7.5 is installed
  • OR gconf2-x86-2.24.0-7.5 is installed
  • OR libfreebl3-3.12.3.1-1.2.1 is installed
  • OR libfreebl3-32bit-3.12.3.1-1.2.1 is installed
  • OR libfreebl3-x86-3.12.3.1-1.2.1 is installed
  • OR libidl-0.8.11-2.14 is installed
  • OR libidl-32bit-0.8.11-2.14 is installed
  • OR libidl-x86-0.8.11-2.14 is installed
  • OR mozilla-nspr-4.8-1.3.1 is installed
  • OR mozilla-nspr-32bit-4.8-1.3.1 is installed
  • OR mozilla-nspr-x86-4.8-1.3.1 is installed
  • OR mozilla-nss-3.12.3.1-1.2.1 is installed
  • OR mozilla-nss-32bit-3.12.3.1-1.2.1 is installed
  • OR mozilla-nss-tools-3.12.3.1-1.2.1 is installed
  • OR mozilla-nss-x86-3.12.3.1-1.2.1 is installed
  • OR mozilla-xulrunner190-1.9.0.12-1.1.1 is installed
  • OR mozilla-xulrunner190-32bit-1.9.0.12-1.1.1 is installed
  • OR mozilla-xulrunner190-gnomevfs-1.9.0.12-1.1.1 is installed
  • OR mozilla-xulrunner190-translations-1.9.0.12-1.1.1 is installed
  • OR mozilla-xulrunner190-x86-1.9.0.12-1.1.1 is installed
  • OR mozilla-xulrunner191-1.9.1.11-0.1.1 is installed
  • OR mozilla-xulrunner191-32bit-1.9.1.11-0.1.1 is installed
  • OR mozilla-xulrunner191-gnomevfs-1.9.1.11-0.1.1 is installed
  • OR mozilla-xulrunner191-translations-1.9.1.11-0.1.1 is installed
  • OR mozilla-xulrunner191-x86-1.9.1.11-0.1.1 is installed
  • OR mozilla-xulrunner192-1.9.2.12-0.6.1 is installed
  • OR mozilla-xulrunner192-32bit-1.9.2.12-0.6.1 is installed
  • OR mozilla-xulrunner192-gnome-1.9.2.12-0.6.1 is installed
  • OR mozilla-xulrunner192-translations-1.9.2.12-0.6.1 is installed
  • OR mozilla-xulrunner192-x86-1.9.2.12-0.6.1 is installed
  • OR orbit2-2.14.16-2.16 is installed
  • OR orbit2-32bit-2.14.16-2.16 is installed
  • OR orbit2-x86-2.14.16-2.16 is installed
  • OR pango-1.22.1-3.18.1 is installed
  • OR pango-32bit-1.22.1-3.18.1 is installed
  • OR pango-doc-1.22.1-3.18.1 is installed
  • OR pango-x86-1.22.1-3.18.1 is installed
  • BACK