Cairo · Cairo · CVE-2014-5116
**Name of the Vulnerable Software and Affected Versions**
Cairo version 1.10.2
**Description**
The issue allows context-dependent attackers to cause a denial of service, specifically a NULL pointer dereference, via a large string. This is related to the `cairo image surface get data` function.
**Recommendations**
For Cairo version 1.10.2, update to a newer version to mitigate the risk, as the `cairo image surface get data` function is vulnerable to a NULL pointer dereference.