Wind River Support Network

HomeDefectsLIN10-4814
Not to be fixed

LIN10-4814 : Security Advisory - cairo - CVE-2018-18064

Created: Oct 14, 2018    Updated: Dec 22, 2022
Resolved Date: Dec 22, 2022
Found In Version: 10.17.41.1
Severity: Standard
Applicable for: Wind River Linux LTS 17
Component/s: Userspace

Description

cairo through 1.15.14 has an out-of-bounds stack-memory write during processing of a crafted document by WebKitGTK+ because of the interaction between cairo-rectangular-scan-converter.c (the generate and render_rows functions) and cairo-image-compositor.c (the _cairo_image_spans_and_zero function).

https://nvd.nist.gov/vuln/detail/CVE-2018-18064

CVEs


Live chat
Online