CVE Vulnerabilities

CVE-2009-1194

Published: May 11, 2009 | Modified: Feb 13, 2023
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Integer overflow in the pango_glyph_string_set_size function in pango/glyphstring.c in Pango before 1.24 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long glyph string that triggers a heap-based buffer overflow, as demonstrated by a long document.location value in Firefox.

Affected Software

Name Vendor Start Version End Version
Pango Pango * 1.22 (including)
Pango Pango 1.2 (including) 1.2 (including)
Pango Pango 1.4 (including) 1.4 (including)
Pango Pango 1.6 (including) 1.6 (including)
Pango Pango 1.8 (including) 1.8 (including)
Pango Pango 1.10 (including) 1.10 (including)
Pango Pango 1.12 (including) 1.12 (including)
Pango Pango 1.14 (including) 1.14 (including)
Pango Pango 1.16 (including) 1.16 (including)
Pango Pango 1.18 (including) 1.18 (including)
Pango Pango 1.20 (including) 1.20 (including)

References