CVE-2018-15120
Summary
| CVE | CVE-2018-15120 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2018-08-24 19:29:00 UTC |
| Updated | 2021-07-14 15:41:00 UTC |
| Description | libpango in Pango 1.40.8 through 1.42.3, as used in hexchat and other products, allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via crafted text with invalid Unicode sequences. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| Pango: Denial of Service (GLSA 201811-07) — Gentoo security |
GENTOO |
security.gentoo.org |
Third Party Advisory |
| Prevent an assertion with invalid Unicode sequences · GNOME/pango@71aaeaf · GitHub |
CONFIRM |
github.com |
Patch, Third Party Advisory |
| Update: Sony Says It's Fixed Malicious PS4 Message Exploit - IGN |
MISC |
www.ign.com |
Exploit, Third Party Advisory |
| Libpango 1.40.8 - Denial of Service (PoC) |
EXPLOIT-DB |
www.exploit-db.com |
Exploit, Patch, Third Party Advisory, VDB Entry |
| USN-3750-1: Pango vulnerability | Ubuntu security notices |
UBUNTU |
usn.ubuntu.com |
Third Party Advisory |
| Message Bricking Console Megathread : PS4 |
MISC |
www.reddit.com |
Third Party Advisory |
| 52.117.224.77/xfce4-pdos.webm |
MISC |
52.117.224.77 |
Exploit, Third Party Advisory |
| Libpango 1.40.8 - Denial of Service (PoC) |
MISC |
www.exploit-db.com |
Exploit, Patch, Third Party Advisory, VDB Entry |
| pango/NEWS at 1.42.4 · GNOME/pango · GitHub |
CONFIRM |
github.com |
Release Notes, Third Party Advisory |
| i.redd.it/v7p4n2ptu0s11.jpg |
MISC |
i.redd.it |
Third Party Advisory |
| A critical pango fix |
MLIST |
mail.gnome.org |
Patch, Third Party Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 710318 Gentoo Linux Pango Denial of service Vulnerability (GLSA 201811-07)