Known vulnerabilities in pango (Red Hat package)
Vendor:
Red Hat Inc.
Software:
pango (Red Hat package)
Software CPE:
cpe:2.3:o:red_hat:pango_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Website:
https://www.redhat.com/en
Total vulnerabilities:
4
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU29244 - Access of Uninitialized Pointer CVE-2019-11459 |
CWE-824 | Low | 1.42.4-6.el8 | 25.06.2020 |
SB2019042313 SB2020071719 SB2019100321 and 8 more |
||
| #VU18791 - Permissions, Privileges, and Access Controls CVE-2019-12795 |
CWE-264 | Low | 1.42.4-6.el8 | 13.06.2019 |
SB2019070801 SB2019070802 SB2019072234 and 5 more |
||
| #VU17353 - Improper input validation CVE-2018-5819 |
CWE-20 | Low | 1.42.4-3.el7 | 01.02.2019 |
SB2019012912 SB2019052213 SB2019080638 and 1 more |
||
| #VU40344 - Heap-based Buffer Overflow CVE-2015-7552 |
CWE-122 | Medium | 1.40.4-1.el7 | 18.04.2016 |
SB2016041804 SB2017080118 |