CVE-2017-7475

MEDIUM5.5EPSS 0.28%

cairo is vulnerable to denial of service due to a null pointer dereference

Published: 11/15/2017Modified: 4/28/2026
Also known as:GHSA-5v3f-73gv-x7x5DEBIAN-CVE-2017-7475

Description

Cairo version 1.15.4 is vulnerable to a NULL pointer dereference related to the FT_Load_Glyph and FT_Render_Glyph resulting in an application crash.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM5.5CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

References (8)