yocto ▾
›
kirkstone ▾
›
vulnerability
›
CVE-2019-6462
Component Overview
Vulnerability Overview
Name
CVE-2019-6462
Source
NVD (
link
)
Debian (
link
)
Description
An issue was discovered in cairo 1.16.0. There is an infinite loop in the function _arc_error_normalized in the file cairo-arc.c, related to _arc_max_angle_for_tolerance_normalized.
CWEs
CWE-835
Published Date
Jan 16, 2019
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://github.com/TeamSeri0us/pocs/tree/master/gerbv
Not Applicable
https://gitlab.freedesktop.org/cairo/cairo/issues/353
Third Party Advisory
https://github.com/TeamSeri0us/pocs/tree/master/gerbv
Not Applicable
https://gitlab.freedesktop.org/cairo/cairo/issues/353
Third Party Advisory
Analysis
#
Affected Component
Analysis
cairo
Patched
Vulnerability Ratings
#
6.5
CVSSv31
4.3
CVSSv2
Others affected components
#
Name
Project
Project Version
Version
Status
cairo
buildroot
2025.02.x
1.18.4
Not Affected
cairo
buildroot
master
1.18.4
Not Affected
cairo
yocto
master
1.18.4
Not Affected
cairo
yocto
scarthgap
1.18.0
Not Affected
Resolved with patches
#
cairo (yocto:kirkstone)
#
Title
Author
Resolve
1
_arc_max_angle_for_tolerance_normalized: fix infinite loop
Heiko Lewin <hlewin@gmx.de>
CVE-2019-6462