CVE Database
/

CVE-2019-1010258

Back to search

CVE-2019-1010258

Published: May 15, 2019

Modified: Aug 5, 2024

PUBLISHED

Description

nanosvg library nanosvg after commit c1f6e209c16b18b46aa9f45d7e619acf42c29726 is affected by: Buffer Overflow. The impact is: Memory corruption leading to at least DoS. More severe impact vectors need more investigation. The component is: it's part of a svg processing library. function nsvg__parseColorRGB in src/nanosvg.h / line 1227. The attack vector is: It depends library usage. If input is passed from the network, then network connectivity is enough. Most likely an attack will require opening a specially crafted .svg file.

VendorProductVersions

nanosvg library

nanosvg

affected
after commit c1f6e209c16b18b46aa9f45d7e619acf42c29726

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now