PT-2025-45961 · Julia · Cairo Jll

Published

2025-10-10

·

Updated

2025-10-10

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
A flaw was found in cairo's image-compositor.c in all versions prior to 1.17.4. This flaw allows an attacker who can provide a crafted input file to cairo's image-compositor (for example, by convincing a user to open a file in an application using cairo, or if an application uses cairo on untrusted input) to cause a stack buffer overflow -> out-of-bounds WRITE. The highest impact from this vulnerability is to confidentiality, integrity, as well as system availability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

JLSEC-2025-17

Affected Products

Cairo Jll