First published: Wed Jan 16 2019(Updated: )
An issue was discovered in cairo 1.16.0. There is an infinite loop in the function _arc_error_normalized in the file cairo-arc.c, related to _arc_max_angle_for_tolerance_normalized.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cairo Graphics | =1.16.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-6462 is classified as a high severity vulnerability due to the possibility of causing an infinite loop.
To fix CVE-2019-6462, update Cairo to a version later than 1.16.0 that has addressed this issue.
CVE-2019-6462 affects Cairo version 1.16.0.
CVE-2019-6462 is a denial-of-service vulnerability caused by an infinite loop.
The vulnerability in CVE-2019-6462 is found in the function _arc_error_normalized in cairo-arc.c.