Candidate: CVE-2016-6163 PublicDate: 2017-02-03 15:59:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-6163 http://seclists.org/oss-sec/2016/q3/7 Description: The rsvg_pattern_fix_fallback function in rsvg-paint_server.c in librsvg2 2.40.2 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted svg file. Ubuntu-Description: Notes: sbeattie> reproducer in oss-security post leosilva> could reproduce, but code in trusty is quite different than patch Bugs: Priority: low Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H [5.5 MEDIUM] Patches_librsvg: upstream: https://git.gnome.org/browse/librsvg/commit/?id=8ee18b22ece0f869cb4e2e021c01138cbb8a0226 (bp) upstream: https://git.gnome.org/browse/librsvg/commit/?id=0035e95118a60c0cd3949c2300472d805e16a022 upstream_librsvg: released (2.40.9-2) precise_librsvg: ignored (reached end-of-life) precise/esm_librsvg: DNE (precise was needs-triage) trusty_librsvg: ignored (reached end-of-life) trusty/esm_librsvg: DNE (trusty was needed) vivid/stable-phone-overlay_librsvg: ignored (reached end-of-life) vivid/ubuntu-core_librsvg: DNE wily_librsvg: not-affected (2.40.10-1) xenial_librsvg: not-affected esm-infra/xenial_librsvg: not-affected yakkety_librsvg: not-affected zesty_librsvg: not-affected artful_librsvg: not-affected bionic_librsvg: not-affected cosmic_librsvg: not-affected disco_librsvg: not-affected devel_librsvg: not-affected