security advisorybuffer overflowdebian An issues has been found in svgpp: a C++ library for parsing and rendering Scalable Vector Graphics (SVG) files. . - ------------------------------------------------------------------------- Debian LTS Advisory DLA-4337-1 This email address is being protected from spambots. You need JavaScript enabled to view it. https://www.debian.org/lts/security/ Thorsten Alteholz October 17, 2025 https://wiki.debian.org/LTS - ------------------------------------------------------------------------- Package : svgpp Version : 1.3.0+dfsg1-4+deb11u1 CVE ID : CVE-2021-44960 An issues has been found in svgpp: a C++ library for parsing and rendering Scalable Vector Graphics (SVG) files. The XMLDocument::getRoot function in the renderDocument function handled the XMLDocument object improperly. Specifically, it returned a null pointer prematurely at the second if statement, resulting in a null pointer reference behind the renderDocument function. For Debian 11 bullseye, this problem has been fixed in version 1.3.0+dfsg1-4+deb11u1. We recommend that you upgrade your svgpp packages. For the detailed security status of svgpp please refer to its security tracker page at: https://security-tracker.debian.org/tracker/source-package/svgpp Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS . Security update for Debian LTS addressing issues in the svgpp library, ensuring safe rendering of SVG files.. Debian LTS, svgpp, security advisory, C++ library, 2021 vulnerabilities. . Severity: Important. LinuxSecurity.com Team
Oct 17, 2025 •Important Debian LTS