Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2011-3146
HistorySep 05, 2012 - 11:55 p.m.

CVE-2011-3146

2012-09-0523:55:01
Debian Security Bug Tracker
security-tracker.debian.org
4
denial of service
arbitrary code execution
svg file
rsvgfilterprimitive
unix

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.006

Percentile

78.3%

librsvg before 2.34.1 uses the node name to identify the type of node, which allows context-dependent attackers to cause a denial of service (NULL pointer dereference) and possibly execute arbitrary code via a SVG file with a node with the element name starting with “fe,” which is misidentified as a RsvgFilterPrimitive.

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.006

Percentile

78.3%