librsvg before 2.34.1 uses the node name to identify the...
Vulnerability Description
librsvg before 2.34.1 uses the node name to identify the type of node, which allows context-dependent attackers to cause a denial of service (NULL pointer dereference) and possibly execute arbitrary code via a SVG file with a node with the element name starting with "fe," which is misidentified as a RsvgFilterPrimitive.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2011-3146
Credits & Attribution
No credits recorded in the NVD database.
References
- http://ftp.gnome.org/pub/GNOME/sources/librsvg/2.34/librsvg-2.34.1.news
- http://secunia.com/advisories/45877
- https://bugs.launchpad.net/ubuntu/+source/librsvg/+bug/825497
- https://bugzilla.redhat.com/show_bug.cgi?id=734936
- http://rhn.redhat.com/errata/RHSA-2011-1289.html
- https://bugzilla.gnome.org/show_bug.cgi?id=658014
- http://git.gnome.org/browse/librsvg/commit/?id=34c95743ca692ea0e44778e41a7c0a129363de84
- http://lists.fedoraproject.org/pipermail/package-announce/2011-September/065739.html
- http://lists.fedoraproject.org/pipermail/package-announce/2011-September/066127.html
- http://lists.fedoraproject.org/pipermail/package-announce/2011-September/065730.html
More from gnome
View All →Affected Vendor
gnome
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.