PT-2018-12880 · Gnome+3 · Pango+3

Huntstark

+1

·

Published

2018-08-21

·

Updated

2024-06-15

·

CVE-2018-15120

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Pango versions 1.40.8 through 1.42.3
Description The issue allows remote attackers to cause a denial of service, potentially leading to an application crash, or possibly have other unspecified impacts. This is achieved through crafted text containing invalid Unicode sequences.
Recommendations For Pango versions 1.40.8 through 1.42.3, consider updating to a version outside of this range to mitigate the risk of denial of service or other potential impacts. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2018-2190
CVE-2018-15120
OPENSUSE-SU-2018_2790-1
OPENSUSE-SU-2024:10843-1
OPENSUSE-SU-2024:11148-1
SUSE-SU-2018:2763-1
SUSE-SU-2018_2763-1
USN-3750-1

Affected Products

Alt Linux
Pango
Suse
Ubuntu