Description
librsvg2-bin 2.40.13 contains a buffer overflow vulnerability that allows local attackers to cause a denial of service by processing malformed SVG files. Attackers can supply crafted SVG input to the rsvg conversion tool to trigger a segmentation fault in the cairo image compositor.
Problem types
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Product status
Credits
Hamm3r.py
References
www.exploit-db.com/exploits/44491 (ExploitDB-44491)
www.vulncheck.com/...2-bin-buffer-overflow-via-malformed-svg (VulnCheck Advisory: librsvg2-bin 2.40.13 Buffer Overflow via Malformed SVG)