[prev in list] [next in list] [prev in thread] [next in thread] 

List:       ubuntu-security-announce
Subject:    [USN-3750-1] Pango vulnerability
From:       "Leonidas S. Barbosa" <leo.barbosa () canonical ! com>
Date:       2018-08-22 15:49:59
Message-ID: 1534952999.3913.12.camel () canonical ! com
[Download RAW message or body]

[Attachment #2 (multipart/signed)]


==========================================================================
Ubuntu Security Notice USN-3750-1
August 22, 2018

pango1.0 vulnerability
==========================================================================

A security issue affects these releases of Ubuntu and its derivatives:

- Ubuntu 18.04 LTS

Summary:

Pango could be made to crash if it opened a specially crafted
file.

Software Description:
- pango1.0: Layout and rendering of internationalized text - gir
bindings

Details:

Jeffrey M. discovered that Pango incorrectly handled certain files.
An attacker could possibly use this issue to cause a denial of service.

Update instructions:

The problem can be corrected by updating your system to the following
package versions:

Ubuntu 18.04 LTS:
   gir1.2-pango-1.0                                1.40.14-1ubuntu0.1
   libpango-1.0-0                                    1.40.14-1ubuntu0.1
   libpango1.0-0                                      1.40.14-1ubuntu0.1

After a standard system update you need to restart your session to make
all the necessary changes.

References:
   https://usn.ubuntu.com/usn/usn-3750-1
   CVE-2018-15120

Package Information:
   https://launchpad.net/ubuntu/+source/pango1.0/1.40.14-1ubuntu0.1
["signature.asc" (application/pgp-signature)]
[Attachment #6 (text/plain)]

-- 
ubuntu-security-announce mailing list
ubuntu-security-announce@lists.ubuntu.com
Modify settings or unsubscribe at: https://lists.ubuntu.com/mailman/listinfo/ubuntu-security-announce


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic