CVE Vulnerabilities

CVE-2019-6462

Loop with Unreachable Exit Condition ('Infinite Loop')

Published: Jan 16, 2019 | Modified: Nov 21, 2024
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
6.5 MODERATE
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

An issue was discovered in cairo 1.16.0. There is an infinite loop in the function _arc_error_normalized in the file cairo-arc.c, related to _arc_max_angle_for_tolerance_normalized.

Weakness

The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.

Affected Software

NameVendorStart VersionEnd Version
CairoCairographics1.16.0 (including)1.16.0 (including)
CairoUbuntubionic*
CairoUbuntucosmic*
CairoUbuntudisco*
CairoUbuntueoan*
CairoUbuntuesm-infra/xenial*
CairoUbuntufocal*
CairoUbuntugroovy*
CairoUbuntuhirsute*
CairoUbuntuimpish*
CairoUbuntukinetic*
CairoUbuntulunar*
CairoUbuntumantic*
CairoUbuntutrusty*
CairoUbuntuupstream*
CairoUbuntuxenial*

References