CVE-2018-19876 - log back

CVE-2018-19876 created at 25 Sep 2019 19:31:40
Severity
+ Critical
Remote
+ Remote
Type
+ Arbitrary code execution
Description
+ A memory-corruption issue has been found in cairo versions <= 1.16.0, in the cairo_ft_apply_variations() function in cairo-ft-font.c. This function frees memory using the wrong free function, leading to memory corruption. As cairo is used, among others, by WebKitGTK+, this could be triggered by a crafted web content in some cases.
References
+ https://seclists.org/oss-sec/2018/q4/205
+ https://gitlab.freedesktop.org/cairo/cairo/merge_requests/5
Notes