VYPR
High severity8.8OSV Advisory· Published Jan 13, 2019· Updated Jun 17, 2026

CVE-2019-6245

CVE-2019-6245

Description

An issue was discovered in Anti-Grain Geometry (AGG) 2.4 as used in SVG++ (aka svgpp) 1.2.3. In the function agg::cell_aa::not_equal, dx is assigned to (x2 - x1). If dx >= dx_limit, which is (16384 << poly_subpixel_shift), this function will call itself recursively. There can be a situation where (x2 - x1) is always bigger than dx_limit during the recursion, leading to continual stack consumption.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

7
  • Svgpp/SvgppOSV3 versions
    v1.2.2, v1.2.3+ 2 more
    • (no CPE)range: v1.2.2, v1.2.3
    • cpe:2.3:a:svgpp:svgpp:1.2.3:*:*:*:*:*:*:*
    • (no CPE)range: =1.2.3
  • cpe:2.3:a:antigrain:agg:2.4:*:*:*:*:*:*:*
  • Debian/linux2 versions
    cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:debian:debian_linux:8.0:*:*:*:*:*:*:*
    • cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.