[Bug 1619831] New: CVE-2018-15120 pango:
application crash triggered by unicode chars in pango-emoji.c [fedora-all
]
by bugzilla@redhat.com
https://bugzilla.redhat.com/show_bug.cgi?id=1619831
Bug ID: 1619831
Summary: CVE-2018-15120 pango: application crash triggered by
unicode chars in pango-emoji.c [fedora-all]
Product: Fedora
Version: 28
Component: pango
Keywords: Security, SecurityTracking
Severity: medium
Priority: medium
Assignee: tagoh(a)redhat.com
Reporter: lpardo(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: alexl(a)redhat.com, fonts-bugs(a)lists.fedoraproject.org,
i18n-bugs(a)lists.fedoraproject.org,
john.j5live(a)gmail.com, mclasen(a)redhat.com,
rhughes(a)redhat.com, rstrode(a)redhat.com,
sandmann(a)redhat.com, tagoh(a)redhat.com
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multiple supported versions of Fedora. While only
one tracking bug has been filed, please correct all affected versions at
the same time. If you need to fix the versions independent of each other,
you may clone this bug as appropriate.
--
You are receiving this mail because:
You are on the CC list for the bug.
5 years, 6 months
[Bug 1084493] New: Missing MIDDLE DOT (u+00B7) glyph for Liberation Sans Italic
by Red Hat Bugzilla
https://bugzilla.redhat.com/show_bug.cgi?id=1084493
Bug ID: 1084493
Summary: Missing MIDDLE DOT (u+00B7) glyph for Liberation Sans
Italic
Product: Fedora
Version: rawhide
Component: liberation-fonts
Assignee: psatpute(a)redhat.com
Reporter: jmontane(a)softcatala.org
QA Contact: extras-qa(a)fedoraproject.org
CC: fonts-bugs(a)lists.fedoraproject.org,
i18n-bugs(a)lists.fedoraproject.org,
petersen(a)redhat.com, psatpute(a)redhat.com
Created attachment 882714
--> https://bugzilla.redhat.com/attachment.cgi?id=882714&action=edit
Screenshot showing the bug
Description of problem:
In Windows, there is no glyph for MIDDLE DOT (U+00B7) when using Liberation
Sans Italic, an empty space is showed.
Version-Release number of selected component (if applicable):
2.00.1
How reproducible:
Install Liberation Sans Italic files in a Windows machine (tested in Windows 7
32 and 64 bits). The esay way is installing LibreOffice 4.2, :)
Steps to Reproduce:
1. Open a new document LibreOffice Writer
2. Type "cel·la" (cell) "·" is U+00B7
3. Select "cel·la" text and set format as "Libreration Sans, Italic".
Actual results:
4.- "cel la" is showed in italics,you can copy and paste and set other font.
Expected results:
5.- "cel·la"
Additional info:
U+00B7 is a used character for Catalan text. So, please, fix this issue.
--
You are receiving this mail because:
You are on the CC list for the bug.
Unsubscribe from this bug https://bugzilla.redhat.com/token.cgi?t=1MRhFWVfJa&a=cc_unsubscribe
5 years, 6 months
[Bug 1613550] CVE-2018-15120 pango:
application crash triggered by unicode chars in pango-emoji.c
by bugzilla@redhat.com
https://bugzilla.redhat.com/show_bug.cgi?id=1613550
Doran Moppert <dmoppert(a)redhat.com> changed:
What |Removed |Added
----------------------------------------------------------------------------
Whiteboard|impact=moderate,public=2018 |impact=moderate,public=2018
|0820,reported=20180807,sour |0820,reported=20180807,sour
|ce=upstream,cvss3=4.3/CVSS: |ce=upstream,cvss3=4.3/CVSS:
|3.0/AV:N/AC:L/PR:N/UI:R/S:U |3.0/AV:N/AC:L/PR:N/UI:R/S:U
|/C:N/I:N/A:L,cwe=CWE-617,op |/C:N/I:N/A:L,cwe=CWE-617,op
|enshift-enterprise-3/pango= |enshift-enterprise-3/pango=
|new,fedora-all/pango=affect |new,fedora-all/pango=affect
|ed,rhel-6/pango=notaffected |ed,rhel-6/pango=notaffected
|,rhel-8/pango=affected,rhel |,rhel-8/pango=affected,rhel
|-7/pango=affected,rhel-5/pa |-7/pango=notaffected,rhel-5
|ngo=notaffected |/pango=notaffected
--
You are receiving this mail because:
You are on the CC list for the bug.
5 years, 6 months
[Bug 1613550] CVE-2018-15120 pango:
application crash triggered by unicode chars in pango-emoji.c
by bugzilla@redhat.com
https://bugzilla.redhat.com/show_bug.cgi?id=1613550
Doran Moppert <dmoppert(a)redhat.com> changed:
What |Removed |Added
----------------------------------------------------------------------------
Whiteboard|impact=moderate,public=2018 |impact=moderate,public=2018
|0820,reported=20180807,sour |0820,reported=20180807,sour
|ce=upstream,cvss3=4.3/CVSS: |ce=upstream,cvss3=4.3/CVSS:
|3.0/AV:N/AC:L/PR:N/UI:R/S:U |3.0/AV:N/AC:L/PR:N/UI:R/S:U
|/C:N/I:N/A:L,cwe=CWE-617,op |/C:N/I:N/A:L,cwe=CWE-617,op
|enshift-enterprise-3/pango= |enshift-enterprise-3/pango=
|new,fedora-all/pango=affect |new,fedora-all/pango=affect
|ed,rhel-6/pango=notaffected |ed,rhel-6/pango=notaffected
|,rhel-8/pango=affected,rhel |,rhel-8/pango=affected,rhel
|-7/pango=notaffected,rhel-5 |-7/pango=affected,rhel-5/pa
|/pango=notaffected |ngo=notaffected
--
You are receiving this mail because:
You are on the CC list for the bug.
5 years, 6 months
[Bug 1090631] New: Please set TT_NAME_ID_PREFERRED_FAMILY for Liberation fonts
by Red Hat Bugzilla
https://bugzilla.redhat.com/show_bug.cgi?id=1090631
Bug ID: 1090631
Summary: Please set TT_NAME_ID_PREFERRED_FAMILY for Liberation
fonts
Product: Fedora
Version: rawhide
Component: liberation-fonts
Assignee: psatpute(a)redhat.com
Reporter: rhughes(a)redhat.com
QA Contact: extras-qa(a)fedoraproject.org
CC: fonts-bugs(a)lists.fedoraproject.org,
i18n-bugs(a)lists.fedoraproject.org,
petersen(a)redhat.com, psatpute(a)redhat.com
Description of problem:
At the moment the TT_NAME_ID_PREFERRED_FAMILY is not set on any of the
Liberation fonts. As I understand it, TT_NAME_ID_PREFERRED_FAMILY is supposed
to be the same for all files in the same high-level family, and this seems to
be what most other fonts do in Linux. For the next release could you please set
the PreferredFamily key to just "Liberation" in all 10 files. This allows
component installers like gnome-software to group the fonts together rather
than showing them as separate entries and should have no other effects.
Thanks,
Richard.
--
You are receiving this mail because:
You are on the CC list for the bug.
Unsubscribe from this bug https://bugzilla.redhat.com/token.cgi?t=Zd611y9wUR&a=cc_unsubscribe
5 years, 6 months