Solution
Please Install the Updated Packages.
Insight
Cairo is a vector graphics library designed to provide high-quality display and print output.
An integer overflow flaw was found in the way Cairo processes PNG images.
If an application linked against Cairo processes a malicious PNG image, it is possible to execute arbitrary code as the user running the application.
(CVE-2007-5503)
Users of Cairo are advised to upgrade to these updated packages, which contain a backported patch to resolve this issue.
Affected
cairo on Red Hat Enterprise Linux (v. 5 server)
References
Updated on 2015-03-25
Severity
Classification
-
CVE CVE-2007-5503 -
CVSS Base Score: 6.8
AV:N/AC:M/Au:N/C:P/I:P/A:P
Related Vulnerabilities