CVE-2017-7475 PUBLISHED

Cairo version 1.15.4 is vulnerable to a NULL pointer dereference related to the FT_Load_Glyph and FT_Render_Glyph resulting in an application crash.

EPSS 0.28% · 51.3th percentile

Risk Scores

EPSS Score
0.28%
51.3th percentile

Affected Products

VendorProductVersions
Ubuntu:24.04:LTScairo1.18.0-1, 1.18.0-3, 1.18.0-1ubuntu1
Ubuntu:25.10cairo1.18.4-1build1, 1.18.4-1, 0
Ubuntu:20.04:LTScairo1.16.0-4, 0, 1.16.0-4ubuntu1
Ubuntu:Pro:16.04:LTScairo1.14.6-1ubuntu0.1~esm1, 0, 1.14.2-2ubuntu2
Ubuntu:18.04:LTScairo1.15.10-2ubuntu0.1, 1.15.8-3, 1.15.8-2
Ubuntu:22.04:LTScairo1.16.0-5ubuntu1, 0, 1.16.0-5ubuntu2

Timeline

References

Open in Interactive Console →