Linux.com

Home DistributionCentral Linux Security Mandriva Linux Security Advisory 2009:158-1: pango

Mandriva Linux Security Advisory 2009:158-1: pango

Print PDF

Integer overflow in the pango_glyph_string_set_size function in
pango/glyphstring.c in Pango before 1.24 allows context-dependent
attackers to cause a denial of service (application crash) or possibly
execute arbitrary code via a long glyph string that triggers a
heap-based buffer overflow.

This update corrects the issue.

Update:

pango for CS4 broke applications like MandrivaUpdate, mcc and so
on. This update corrects this problem...

Read More

Comments (0)Add Comment

Write comment
You must be logged in to post a comment. Please register if you do not have an account yet.

busy
Become an Individual Member

Who we are ?

The Linux Foundation is a non-profit consortium dedicated to the growth of Linux.

More About the foundation...

Frequent Questions

Join / Members / Staff / Board