Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
librsvg before 2.34.1 uses the node name to identify the type of node, which allows context-dependent attackers to cause a denial of service (NULL pointer dereference) and possibly execute arbitrary code via a SVG file with a node with the element name starting with "fe," which is misidentified as a RsvgFilterPrimitive.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
librsvg节点类型处理拒绝服务漏洞
Vulnerability Description
LibRSVG是一款使用C语言编写的SVG渲染引擎。 librsvg 2.34.1之前版本在处理节点类型时存在拒绝服务漏洞。远程攻击者可借助特制SVG图形解引用无效内存,使受影响应用程序崩溃,拒绝服务合法用户。
CVSS Information
N/A
Vulnerability Type
N/A