Описание
The fill_xrgb32_lerp_opaque_spans function in cairo-image-compositor.c in cairo before 1.14.2 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a negative span length.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 5 | cairo | Not affected | ||
| Red Hat Enterprise Linux 6 | cairo | Not affected | ||
| Red Hat Enterprise Linux 7 | atk | Fixed | RHBA-2015:2116 | 19.11.2015 |
| Red Hat Enterprise Linux 7 | cairo | Fixed | RHBA-2015:2116 | 19.11.2015 |
| Red Hat Enterprise Linux 7 | dconf | Fixed | RHBA-2015:2116 | 19.11.2015 |
| Red Hat Enterprise Linux 7 | gdk-pixbuf2 | Fixed | RHBA-2015:2116 | 19.11.2015 |
| Red Hat Enterprise Linux 7 | glib2 | Fixed | RHBA-2015:2116 | 19.11.2015 |
| Red Hat Enterprise Linux 7 | glibmm24 | Fixed | RHBA-2015:2116 | 19.11.2015 |
| Red Hat Enterprise Linux 7 | glib-networking | Fixed | RHBA-2015:2116 | 19.11.2015 |
| Red Hat Enterprise Linux 7 | gobject-introspection | Fixed | RHBA-2015:2116 | 19.11.2015 |
Показывать по
Дополнительная информация
Статус:
EPSS
4.3 Medium
CVSS2
Связанные уязвимости
The fill_xrgb32_lerp_opaque_spans function in cairo-image-compositor.c in cairo before 1.14.2 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a negative span length.
The fill_xrgb32_lerp_opaque_spans function in cairo-image-compositor.c in cairo before 1.14.2 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a negative span length.
The fill_xrgb32_lerp_opaque_spans function in cairo-image-compositor.c ...
The fill_xrgb32_lerp_opaque_spans function in cairo-image-compositor.c in cairo before 1.14.2 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a negative span length.
EPSS
4.3 Medium
CVSS2