Oval Definition:oval:org.mitre.oval:def:23623
Revision Date:2014-05-26Version:13
Title:ELSA-2011:1289: librsvg2 security update (Moderate)
Description:librsvg before 2.34.1 uses the node name to identify the type of node, which allows context-dependent attackers to cause a denial of service (NULL pointer dereference) and possibly execute arbitrary code via a SVG file with a node with the element name starting with "fe," which is misidentified as a RsvgFilterPrimitive.
Family:unixClass:patch
Status:ACCEPTEDReference(s):CVE-2011-3146
ELSA-2011:1289-01
Platform(s):Oracle Linux 6
Product(s):librsvg2
Definition Synopsis
  • Oracle Linux 6.x
  • AND rpm test
  • librsvg2-devel is earlier than 0:2.26.0-5.el6_1.1
  • OR librsvg2 is earlier than 0:2.26.0-5.el6_1.1
  • BACK