VYPR

Cairo

by Red Hat

CVEs (2)

  • CVE-2017-7475MedMay 19, 2017
    risk 0.36cvss 5.5epss 0.00

    Cairo version 1.15.4 is vulnerable to a NULL pointer dereference related to the FT_Load_Glyph and FT_Render_Glyph resulting in an application crash.

  • CVE-2007-5503Nov 30, 2007
    risk 0.01cvss epss 0.10

    Multiple integer overflows in Cairo before 1.4.12 might allow remote attackers to execute arbitrary code, as demonstrated using a crafted PNG image with large width and height values, which is not properly handled by the read_png function.