Related Vulnerabilities: CVE-2017-7475  

Cairo is vulnerable to a NULL pointer dereference related to the FT_Load_Glyph and FT_Render_Glyph resulting in an application crash.

Severity Low

Remote No

Type Denial of service

Description

Cairo is vulnerable to a NULL pointer dereference related to the FT_Load_Glyph and FT_Render_Glyph resulting in an application crash.

AVG-277 cairo 1.14.10-1 1.15.8-1 Low Fixed

https://bugs.freedesktop.org/show_bug.cgi?id=100763
http://seclists.org/oss-sec/2017/q2/151
https://gitlab.freedesktop.org/cairo/cairo/issues/80

Reproducer and report: https://bugs.freedesktop.org/attachment.cgi?id=131198