CVE Vulnerabilities

CVE-2019-6462

Loop with Unreachable Exit Condition ('Infinite Loop')

Published: Jan 16, 2019 | Modified: Nov 07, 2023
CVSS 3.x
6.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
2.5 LOW
CVSS:3.0/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:L
Ubuntu
LOW

An issue was discovered in cairo 1.16.0. There is an infinite loop in the function _arc_error_normalized in the file cairo-arc.c, related to _arc_max_angle_for_tolerance_normalized.

Weakness

The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.

Affected Software

Name Vendor Start Version End Version
Cairo Cairographics 1.16.0 (including) 1.16.0 (including)
Cairo Ubuntu bionic *
Cairo Ubuntu cosmic *
Cairo Ubuntu disco *
Cairo Ubuntu eoan *
Cairo Ubuntu esm-infra/xenial *
Cairo Ubuntu groovy *
Cairo Ubuntu hirsute *
Cairo Ubuntu impish *
Cairo Ubuntu kinetic *
Cairo Ubuntu lunar *
Cairo Ubuntu mantic *
Cairo Ubuntu trusty *
Cairo Ubuntu upstream *
Cairo Ubuntu xenial *

References