First published: Wed Aug 22 2018(Updated: )
Jeffrey M. discovered that Pango incorrectly handled certain files. An attacker could possibly use this issue to cause a denial of service.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/gir1.2-pango-1.0 | <1.40.14-1ubuntu0.1 | 1.40.14-1ubuntu0.1 |
=18.04 | ||
All of | ||
ubuntu/libpango-1.0-0 | <1.40.14-1ubuntu0.1 | 1.40.14-1ubuntu0.1 |
=18.04 | ||
All of | ||
ubuntu/libpango1.0-0 | <1.40.14-1ubuntu0.1 | 1.40.14-1ubuntu0.1 |
=18.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of USN-3750-1 is medium.
The Pango vulnerability can cause a denial of service attack.
The affected software of USN-3750-1 includes gir1.2-pango-1.0, libpango-1.0-0, and libpango1.0-0.
To fix the Pango vulnerability, update the affected software to version 1.40.14-1ubuntu0.1 or later.
More information about USN-3750-1 can be found at the following references: [Ubuntu Security](https://ubuntu.com/security/CVE-2018-15120), [Launchpad](https://launchpad.net/ubuntu/+source/pango1.0/1.40.14-1ubuntu0.1), [Ubuntu Security Notices](https://ubuntu.com/security/notices/USN-3750-1).