Array index error in the hb_ot_layout_build_glyph_classes function in pango/opentype/hb-ot-layout.cc in Pango before 1.27.1 allows context-dependent attackers to cause a denial of service (application crash) via a crafted font file, related to building a synthetic Glyph Definition (aka GDEF) table by using this font's charmap and the Unicode property database.
References
Configurations
History
14 Jul 2021, 15:41
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:gnome:pango:*:*:*:*:*:*:*:* |
Information
Published : 2010-03-18 17:30
Updated : 2024-02-04 17:54
NVD link : CVE-2010-0421
Mitre link : CVE-2010-0421
CVE.ORG link : CVE-2010-0421
JSON object : View
Products Affected
gnome
- pango
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer