First published: Fri May 19 2017(Updated: )
Cairo version 1.15.4 is vulnerable to a NULL pointer dereference related to the `FT_Load_Glyph` and `FT_Render_Glyph` resulting in an application crash.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
rubygems/cairo | =1.15.4 | 1.15.5 |
Cairo Graphics | =1.15.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-7475 has a severity rating that warrants immediate attention due to its potential to cause application crashes.
To fix CVE-2017-7475, upgrade Cairo to version 1.15.5 or later.
Cairo version 1.15.4 is the only affected version regarding CVE-2017-7475.
The impact of CVE-2017-7475 is a NULL pointer dereference that leads to application crashes.
There are no recommended workarounds for CVE-2017-7475 other than upgrading to a fixed version.