summaryrefslogtreecommitdiffstats
path: root/package/pango/0002-Prevent-an-assertion-with-invalid-Unicode-sequences.patch
Commit message (Collapse)AuthorAgeFilesLines
* package/pango: add upstream security fix for CVE-2018-15120Peter Korsgaard2019-01-191-0/+38
libpango in Pango 1.40.8 through 1.42.3, as used in hexchat and other products, allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via crafted text with invalid Unicode sequences. https://nvd.nist.gov/vuln/detail/CVE-2018-15120 Signed-off-by: Peter Korsgaard <peter@korsgaard.com>
OpenPOWER on IntegriCloud