Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The fill_xrgb32_lerp_opaque_spans function in cairo-image-compositor.c in cairo before 1.14.2 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a negative span length.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cairo 拒绝服务漏洞
Vulnerability Description
Cairo是软件开发者Carl Worth和Behdad Esfahbod共同研发的一个跨平台的开源矢量图形函数库,它支持在多个背景下做2D绘图,并提供高质量的显示和打印输出。 Cairo 1.14.2之前版本的cairo-image-compositor.c文件中的‘fill_xrgb32_lerp_opaque_spans’函数存在安全漏洞。远程攻击者可借助负的span长度值利用该漏洞造成拒绝服务(越边界读取和应用程序崩溃)。
CVSS Information
N/A
Vulnerability Type
N/A