CVE-2011-3146

librsvg before 2.34.1 uses the node name to identify the type of node, which allows context-dependent attackers to cause a denial of service (NULL pointer dereference) and possibly execute arbitrary code via a SVG file with a node with the element name starting with "fe," which is misidentified as a RsvgFilterPrimitive.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
6.8 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 87%
Affected Products (NVD)
VendorProductVersion
gnomelibrsvg
𝑥
≤ 2.34.0
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
librsvg
bookworm
2.54.7+dfsg-1~deb12u1
fixed
bookworm (security)
2.54.7+dfsg-1~deb12u1
fixed
bullseye
2.50.3+dfsg-1+deb11u1
fixed
bullseye (security)
2.50.3+dfsg-1+deb11u1
fixed
sid
2.59.1+dfsg-1
fixed
squeeze
no-dsa
trixie
2.59.1+dfsg-1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
librsvg
hardy
ignored
lucid
Fixed 2.26.3-0ubuntu1.1
released
maverick
Fixed 2.32.0-0ubuntu1.1
released
natty
Fixed 2.32.1-0ubuntu3.1
released
openSUSE logo
openSUSE / SLES Releases
openSUSE Product
Release
gdk-pixbuf-loader-rsvg
suse enterprise desktop 15
2.42.3-1.49
fixed
suse enterprise desktop 15 SP1
2.42.3-1.49
fixed
suse enterprise sap 12 SP5
2.40.20-5.6.1
fixed
suse enterprise sap 15
2.42.3-1.49
fixed
suse enterprise sap 15 SP1
2.42.3-1.49
fixed
suse enterprise server 12
2.40.2-1.13
fixed
suse enterprise server 12 SP1
2.40.2-1.13
fixed
suse enterprise server 12 SP2
2.40.15-4.5
fixed
suse enterprise server 12 SP3
2.40.15-4.5
fixed
suse enterprise server 12 SP4
2.40.20-5.6.1
fixed
suse enterprise server 12 SP5
2.40.20-5.6.1
fixed
suse enterprise server 15
2.42.3-1.49
fixed
suse enterprise server 15 SP1
2.42.3-1.49
fixed
librsvg-2-2
suse enterprise desktop 15
2.42.3-1.49
fixed
suse enterprise desktop 15 SP1
2.42.3-1.49
fixed
suse enterprise sap 12 SP5
2.40.20-5.6.1
fixed
suse enterprise sap 15
2.42.3-1.49
fixed
suse enterprise sap 15 SP1
2.42.3-1.49
fixed
suse enterprise server 12
2.40.2-1.13
fixed
suse enterprise server 12 SP1
2.40.2-1.13
fixed
suse enterprise server 12 SP2
2.40.15-4.5
fixed
suse enterprise server 12 SP3
2.40.15-4.5
fixed
suse enterprise server 12 SP4
2.40.20-5.6.1
fixed
suse enterprise server 12 SP5
2.40.20-5.6.1
fixed
suse enterprise server 15
2.42.3-1.49
fixed
suse enterprise server 15 SP1
2.42.3-1.49
fixed
librsvg-2-2-32bit
suse enterprise sap 12 SP5
2.40.20-5.6.1
fixed
suse enterprise server 12
2.40.2-1.13
fixed
suse enterprise server 12 SP1
2.40.2-1.13
fixed
suse enterprise server 12 SP2
2.40.15-4.5
fixed
suse enterprise server 12 SP3
2.40.15-4.5
fixed
suse enterprise server 12 SP4
2.40.20-5.6.1
fixed
suse enterprise server 12 SP5
2.40.20-5.6.1
fixed
librsvg-devel
suse enterprise desktop 15
2.42.3-1.49
fixed
suse enterprise desktop 15 SP1
2.42.3-1.49
fixed
suse enterprise sap 15
2.42.3-1.49
fixed
suse enterprise sap 15 SP1
2.42.3-1.49
fixed
suse enterprise server 15
2.42.3-1.49
fixed
suse enterprise server 15 SP1
2.42.3-1.49
fixed
rsvg-view
suse enterprise sap 12 SP5
2.40.20-5.6.1
fixed
suse enterprise server 12
2.40.2-1.13
fixed
suse enterprise server 12 SP1
2.40.2-1.13
fixed
suse enterprise server 12 SP2
2.40.15-4.5
fixed
suse enterprise server 12 SP3
2.40.15-4.5
fixed
suse enterprise server 12 SP4
2.40.20-5.6.1
fixed
suse enterprise server 12 SP5
2.40.20-5.6.1
fixed
typelib-1_0-Rsvg-2_0
suse enterprise desktop 15
2.42.3-1.49
fixed
suse enterprise desktop 15 SP1
2.42.3-1.49
fixed
suse enterprise sap 15
2.42.3-1.49
fixed
suse enterprise sap 15 SP1
2.42.3-1.49
fixed
suse enterprise server 15
2.42.3-1.49
fixed
suse enterprise server 15 SP1
2.42.3-1.49
fixed
Red Hat logo
Red Hat Enterprise Linux Releases
Red Hat Product
Release
librsvg2
RHEL 6
0:2.26.0-5.el6_1.1
fixed
librsvg2-devel
RHEL 6
0:2.26.0-5.el6_1.1
fixed