OESA-2022-2074

Source
https://www.openeuler.org/en/security/security-bulletins/detail/?id=openEuler-SA-2022-2074
Import Source
https://repo.openeuler.org/security/data/osv/OESA-2022-2074.json
JSON Data
https://api.test.osv.dev/v1/vulns/OESA-2022-2074
Upstream
Published
2022-11-11T11:04:34Z
Modified
2025-08-12T05:04:35.657815Z
Summary
gnome-font-viewer security update
Details

The Font Viewer application has been rewritten to match the new design used for GNOME 3 applications.It can now show an overview of all installed fonts and optimizes screen space usage when the application is maximized.

Security Fix(es):

In texttoglyphs in sushi-font-widget.c in gnome-font-viewer 3.34.0, there is a NULL pointer dereference while parsing a TTF font file that lacks a name section (due to a g_strconcat call that returns NULL).(CVE-2019-19308)

Database specific
{
    "severity": "Medium"
}
References

Affected packages

openEuler:22.03-LTS / gnome-font-viewer

Package

Name
gnome-font-viewer
Purl
pkg:rpm/openEuler/gnome-font-viewer&distro=openEuler-22.03-LTS

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
3.34.0-2.oe2203

Ecosystem specific

{
    "x86_64": [
        "gnome-font-viewer-debuginfo-3.34.0-2.oe2203.x86_64.rpm",
        "gnome-font-viewer-debugsource-3.34.0-2.oe2203.x86_64.rpm",
        "gnome-font-viewer-3.34.0-2.oe2203.x86_64.rpm"
    ],
    "src": [
        "gnome-font-viewer-3.34.0-2.oe2203.src.rpm"
    ],
    "aarch64": [
        "gnome-font-viewer-debugsource-3.34.0-2.oe2203.aarch64.rpm",
        "gnome-font-viewer-3.34.0-2.oe2203.aarch64.rpm",
        "gnome-font-viewer-debuginfo-3.34.0-2.oe2203.aarch64.rpm"
    ]
}