CVE-2017-11464: Divide by Zero
A SIGFPE is raised in the function boxblurline of rsvg-filter.c in GNOME librsvg 2.40.17 during an attempted parse of a crafted SVG file, because of incorrect protection against division by zero.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2017-11464?
CVE-2017-11464 is a vulnerability in GNOME librsvg 2.40.17 that raises a SIGFPE (Floating Point Exception) during SVG file parsing due to incorrect protection against division by zero.
What is the severity of CVE-2017-11464?
The severity of CVE-2017-11464 is high, with a CVSS score of 7.8.
How does CVE-2017-11464 affect GNOME librsvg?
CVE-2017-11464 affects GNOME librsvg version 2.40.17, but it has been remediated in subsequent versions.
How can I fix CVE-2017-11464 in GNOME librsvg?
To fix CVE-2017-11464 in GNOME librsvg, update to version 2.44.10-2.1+deb10u3, 2.50.3+dfsg-1+deb11u1, 2.54.7+dfsg-1~deb12u1, or 2.54.7+dfsg-2.
Where can I find more information about CVE-2017-11464?
You can find more information about CVE-2017-11464 at the following references: [1] [2] [3].