Bug#869129: librsvg: CVE-2017-11464

2017-07-20 Thread Salvatore Bonaccorso
On Thu, Jul 20, 2017 at 08:37:30PM +0200, Salvatore Bonaccorso wrote: > Please adjust the affected versions in the BTS as needed. AFAICT, the problematic code has been introduced while "This replaces the blurring machinery with a real gaussian blur for small radiuses, and fixes box blurs for

Bug#869129: librsvg: CVE-2017-11464

2017-07-20 Thread Salvatore Bonaccorso
Source: librsvg Version: 2.40.16-1 Severity: grave Tags: security Forwarded: https://bugzilla.gnome.org/show_bug.cgi?id=783835 Hi, the following vulnerability was published for librsvg. CVE-2017-11464[0]: | A SIGFPE is raised in the function box_blur_line of rsvg-filter.c in | GNOME librsvg