Alerts This Week
Warning Icon 1 646
Alerts This Week
Warning Icon 1 646

Debian 11 rlottie Critical Boundary Check Issue DLA-4474-1 CVE-2025-0634

debian lts
Calendar Grey February 9, 2026
Dist Debian Esm H88
Critical update for rlottie in Debian LTS resolves boundary check issues and improves security.
Several issues have been found in rlottie, a library for rendering vector based animations and art

Summary

Several issues have been found in rlottie, a library for rendering vector
based animations and art. Most of these CVEs have been already fixed by
Fix-crash-on-invalid-data.patch in a previous upload. The remaining
boundary check has now been fixed as well.


For Debian 11 bullseye, these problems have been fixed in version
0.1+dfsg-2+deb11u1.

We recommend that you upgrade your rlottie packages.

For the detailed security status of rlottie please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/rlottie

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS



Severity
critical
Lowest
Low
Medium
High
Critical

Package: rlottie
Version: 0.1+dfsg-2+deb11u1
CVE ID: CVE-2025-0634 CVE-2025-53074 CVE-2025-53075

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here