DSA-1798 pango1.0 -- integer overflow
|ID: oval:org.mitre.oval:def:7248||Date: (C)2009-12-15 (M)2018-03-27|
|Class: PATCH||Family: unix|
Will Drewry discovered that pango, a system for layout and rendering of internationalized text, is prone to an integer overflow via long glyphstrings. This could cause the execution of arbitrary code when displaying crafted data through an application using the pango library.