CVE-2007-5503

Severity CVSS v4.0:
Pending analysis
Type:
CWE-189 Numeric Errors
Publication date:
30/11/2007
Last modified:
09/04/2025

Description

Multiple integer overflows in Cairo before 1.4.12 might allow remote attackers to execute arbitrary code, as demonstrated using a crafted PNG image with large width and height values, which is not properly handled by the read_png function.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:redhat:cairo:*:*:*:*:*:*:*:* 1.4.10 (including)


References to Advisories, Solutions, and Tools