CVE-2019-6462: Medium severity cairo graphics vulnerability
Published Jan 16, 2019
·Updated
An issue was discovered in cairo 1.16.0. There is an infinite loop in the function arcerrornormalized in the file cairo-arc.c, related to arcmaxanglefortolerancenormalized.
Affected Software
1 affected component
Cairographics Cairo=1.16.0
Event History
Jan 16, 2019
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Data Sourced
via NVD·06:29 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2019-6462?
CVE-2019-6462 is classified as a high severity vulnerability due to the possibility of causing an infinite loop.
2
How do I fix CVE-2019-6462?
To fix CVE-2019-6462, update Cairo to a version later than 1.16.0 that has addressed this issue.
3
What software is affected by CVE-2019-6462?
CVE-2019-6462 affects Cairo version 1.16.0.
4
What type of vulnerability is CVE-2019-6462?
CVE-2019-6462 is a denial-of-service vulnerability caused by an infinite loop.
5
What specific function contains the vulnerability in CVE-2019-6462?
The vulnerability in CVE-2019-6462 is found in the function _arc_error_normalized in cairo-arc.c.