Permalink
CVE-2018-25305
6.2 MEDIUM
- CVSS version: 3.1
- Attack vector (AV): LOCAL
- Attack complexity (AC): LOW
- Privileges required (PR): NONE
- User interaction (UI): NONE
- Scope (S): UNCHANGED
- Confidentiality impact (C): NONE
- Integrity impact (I): NONE
- Availability impact (A): HIGH
by @LeSuisse Activity log
- Created suggestion
-
@LeSuisse
ignored
4 packages
- sbclPackages.cl-rsvg2
- haskellPackages.gi-rsvg
- ocamlPackages.lablgtk3-rsvg2
- ocamlPackages_latest.lablgtk3-rsvg2
- @LeSuisse dismissed
librsvg2-bin 2.40.13 Buffer Overflow via Malformed SVG
librsvg2-bin 2.40.13 contains a buffer overflow vulnerability that allows local attackers to cause a denial of service by processing malformed SVG files. Attackers can supply crafted SVG input to the rsvg conversion tool to trigger a segmentation fault in the cairo image compositor.
References
-
ExploitDB-44491 exploit
-
VulnCheck Advisory: librsvg2-bin 2.40.13 Buffer Overflow via Malformed SVG third-party-advisory
Affected products
RSVG
- ==2.40.13
Matching in nixpkgs
Ignored packages (4)
pkgs.sbclPackages.cl-rsvg2
None
-
nixos-unstable rsvg2-20200925-git
- nixpkgs-unstable rsvg2-20200925-git
- nixos-unstable-small rsvg2-20200925-git
-
nixos-25.11 rsvg2-20200925-git
- nixos-25.11-small rsvg2-20200925-git
- nixpkgs-25.11-darwin rsvg2-20200925-git
pkgs.haskellPackages.gi-rsvg
librsvg bindings
pkgs.ocamlPackages.lablgtk3-rsvg2
OCaml interface to Gnome rsvg2 library
-
nixos-unstable lablgtk3-rsvg2-3.1.5
- nixpkgs-unstable lablgtk3-rsvg2-3.1.5
- nixos-unstable-small lablgtk3-rsvg2-3.1.5
-
nixos-25.11 lablgtk3-rsvg2-3.1.5
- nixos-25.11-small lablgtk3-rsvg2-3.1.5
- nixpkgs-25.11-darwin lablgtk3-rsvg2-3.1.5
pkgs.ocamlPackages_latest.lablgtk3-rsvg2
OCaml interface to Gnome rsvg2 library
-
nixos-unstable lablgtk3-rsvg2-3.1.5
- nixpkgs-unstable lablgtk3-rsvg2-3.1.5
- nixos-unstable-small lablgtk3-rsvg2-3.1.5
Package maintainers
-
@bobby285271 Bobby Rong <rjl931189261@126.com>
-
@jtojnar Jan Tojnar <jtojnar@gmail.com>
-
@hedning Tor Hedin Brønner <torhedinbronner@gmail.com>
-
@dasj19 Daniel Șerbănescu <daniel@serbanescu.dk>