|
|
| |
|
| |
pango: arbitrary code execution
| Package(s): | evolution28-pango pango qt |
CVE #(s): | CVE-2011-3193
|
| Created: | September 23, 2011 |
Updated: | September 23, 2011 |
| Description: |
From the Red Hat advisory:
A buffer overflow flaw was found in HarfBuzz, an OpenType text shaping
engine used in Pango. If a user loaded a specially-crafted font file with
an application that uses Pango, it could cause the application to crash or,
possibly, execute arbitrary code with the privileges of the user running
the application. |
| Alerts: |
|
( Log in to post comments)
|
|
|