Lucene search

K
prionPRIOn knowledge basePRION:CVE-2019-1010238
HistoryJul 19, 2019 - 5:15 p.m.

Heap overflow

2019-07-1917:15:00
PRIOn knowledge base
www.prio-n.com
6

9.7 High

AI Score

Confidence

High

0.023 Low

EPSS

Percentile

89.8%

Gnome Pango 1.42 and later is affected by: Buffer Overflow. The impact is: The heap based buffer overflow can be used to get code execution. The component is: function name: pango_log2vis_get_embedding_levels, assignment of nchars and the loop condition. The attack vector is: Bug can be used when application pass invalid utf-8 strings to functions like pango_itemize.