First published: Fri Feb 26 2016(Updated: )
It was found that specially crafted SVG file can trigger crash in png_write_row when converting the given SVG using librsvg2 and cairo. Crash happens inside libpng when trying to access invalid pointer. Acknowledgements: Name: Gustavo Grieco
Affected Software | Affected Version | How to fix |
---|---|---|
CentOS Librsvg2 | ||
Debian (specifically libcairo2) | ||
libp2p |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of REDHAT-BUG-1312337 is considered moderate due to the potential for crashes when processing specially crafted SVG files.
To fix REDHAT-BUG-1312337, update the librsvg2, cairo, and libpng software to the latest versions that address this vulnerability.
REDHAT-BUG-1312337 affects systems running GNOME librsvg, Cairo, and libpng.
The impact of REDHAT-BUG-1312337 includes potential crashes and loss of processing capabilities when handling SVG files.
There are currently no known workarounds for REDHAT-BUG-1312337, making an update to the software the best course of action.