Security update for cairo
This update for cairo fixes the following issues:
The following security vulnerability was addressed:
- CVE-2017-9814: Fixed and out-of-bounds read in cairo-truetype-subset.c by
replacing the malloc implementation with _cairo_malloc and checking the size
before memory allocation (bsc#1049092)
This update was imported from the SUSE:SLE-15:Update update project.
-
Submitted by
Qiang Zheng (zhengqiang)
Fixed bugs
bnc#1049092
VUL-1: CVE-2017-9814: cairo: cairo-truetype-subset.c in cairo 1.15.6 and earlier out-of-bounds read