← Vulnerability feed

Vulnerability record · CVE-2007-5503 · published 30 November 2007

CVE-2007-5503: Redhat cairo vulnerability

Redhat · Cairo

Multiple integer overflows in Cairo before 1.4.12 might allow remote attackers to execute arbitrary code, as demonstrated using a crafted PNG image with large width and height values, which is not properly handled by the read_png function.

6.8 CVSS 2.0 Medium EPSS 5.5% · top 7.5% CWE-189 · CWE-189
6.8CVSS 2.0 base score
5.5%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
90References
16 Jun 2026Last modified by NVD

Description

Multiple integer overflows in Cairo before 1.4.12 might allow remote attackers to execute arbitrary code, as demonstrated using a crafted PNG image with large width and height values, which is not properly handled by the read_png function.

AV:N/AC:M/Au:N/C:P/I:P/A:P

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

LinkTags
http://bugs.gentoo.org/show_bug.cgi?id=200350
http://bugs.gentoo.org/show_bug.cgi?id=201860
http://gitweb.freedesktop.org/?p=cairo%3Ba=commitdiff%3Bh=5c7d2d14d78e4dfb1ef6d2c40f0910f177e07360
http://gitweb.freedesktop.org/?p=cairo%3Ba=commitdiff%3Bh=e49bcde27f88e21d5b8037a0089a226096f6514b
http://gitweb.freedesktop.org/?p=cairo%3Ba=commitdiff_plain%3Bh=6020f67f1a49cfe3844c4938d4af24c63c8424cc%3Bhp=c79fc9af33
http://lists.grok.org.uk/pipermail/full-disclosure/2008-August/064118.html
http://lists.opensuse.org/opensuse-security-announce/2008-02/msg00003.html
http://rhn.redhat.com/errata/RHSA-2007-1078.html PatchVendor Advisory
http://secunia.com/advisories/27775 Vendor Advisory
http://secunia.com/advisories/27819 Vendor Advisory
http://secunia.com/advisories/27880 Vendor Advisory
http://secunia.com/advisories/27887 Vendor Advisory
http://secunia.com/advisories/27985 Vendor Advisory
http://secunia.com/advisories/28289 Vendor Advisory
http://secunia.com/advisories/28476 Vendor Advisory
http://secunia.com/advisories/28529 Vendor Advisory
http://secunia.com/advisories/28555 Vendor Advisory
http://secunia.com/advisories/28838 Vendor Advisory
http://secunia.com/advisories/29767 Vendor Advisory
http://secunia.com/advisories/31707 Vendor Advisory
http://secunia.com/advisories/31711 Vendor Advisory
http://security.gentoo.org/glsa/glsa-200712-04.xml
http://security.gentoo.org/glsa/glsa-201209-25.xml
http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.362119
http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0015
http://www.debian.org/security/2008/dsa-1542
http://www.gentoo.org/security/en/glsa/glsa-200712-24.xml
http://www.mandriva.com/security/advisories?name=MDVSA-2008:019
http://www.securityfocus.com/archive/1/486405/100/0/threaded
http://www.securityfocus.com/archive/1/495869/100/0/threaded
http://www.securityfocus.com/bid/26650
http://www.securitytracker.com/id?1019027
http://www.vmware.com/security/advisories/VMSA-2008-0014.html
http://www.vmware.com/support/player2/doc/releasenotes_player2.html
http://www.vmware.com/support/server/doc/releasenotes_server.html
http://www.vmware.com/support/ws6/doc/releasenotes_ws6.html
http://www.vupen.com/english/advisories/2007/4045 Vendor Advisory
http://www.vupen.com/english/advisories/2008/2466 Vendor Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=387431
https://exchange.xforce.ibmcloud.com/vulnerabilities/38771

Track CVE-2007-5503 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

Source: NIST National Vulnerability Database (record CVE-2007-5503), CISA KEV, FIRST EPSS (scores of 2026-09-27). This page is refreshed as NVD updates the record.