<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Fri, 09 Oct 2026 06:24:47 +0000</lastBuildDate>
    <item>
      <title>EUVD-2026-22106</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-22106</link>
      <description>EUVD-2026-22106</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-22106</guid>
    </item>
    <item>
      <title>fkie_cve-2021-21236</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2021-21236</link>
      <description>&lt;p&gt;CairoSVG is a Python (pypi) package. CairoSVG is an SVG converter based on Cairo. In CairoSVG before version 2.5.1, there is a regular expression denial of service (REDoS) vulnerability. When processing SVG files, the python package CairoSVG uses two regular expressions which are vulnerable to Regular Expression Denial of Service (REDoS). If an attacker provides a malicious SVG, it can make cairosvg get stuck processing the file for a very long time. This is fixed in version 2.5.1. See Referenced GitHub advisory for more information.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;CairoSVG is a Python (pypi) package. CairoSVG is an SVG converter based on Cairo. In CairoSVG before version 2.5.1, there is a regular expression denial of service (REDoS) vulnerability. When processing SVG files, the python package CairoSVG uses two regular expressions which are vulnerable to Regular Expression Denial of Service (REDoS). If an attacker provides a malicious SVG, it can make cairosvg get stuck processing the file for a very long time. This is fixed in version 2.5.1. See Referenced GitHub advisory for more information.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2021-21236</guid>
    </item>
    <item>
      <title>GHSA-hq37-853p-g5cf — Regular Expression Denial of Service in CairoSVG</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-hq37-853p-g5cf</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: CairoSVG&lt;/p&gt;
&lt;p&gt;# Doyensec Vulnerability Advisory&lt;/p&gt;
&lt;p&gt;* Regular Expression Denial of Service (REDoS) in cairosvg
* Affected Product: CairoSVG v2.0.0+
* Vendor: https://github.com/Kozea
* Severity: Medium
* Vulnerability Class: Denial of Service
* Author(s): Ben Caller ([Doyensec](https://doyensec.com))&lt;/p&gt;
&lt;p&gt;## Summary&lt;/p&gt;
&lt;p&gt;When processing SVG files, the python package CairoSVG uses two regular expressions which are vulnerable to Regular Expression Denial of Service (REDoS).
If an attacker provides a malicious SVG, it can make cairosvg get stuck processing the file for a very long time.&lt;/p&gt;
&lt;p&gt;## Technical description&lt;/p&gt;
&lt;p&gt;The vulnerable regular expressions are&lt;/p&gt;
&lt;p&gt;https://github.com/Kozea/CairoSVG/blob/9c4a982b9a021280ad90e89707eacc1d114e4ac4/cairosvg/colors.py#L190-L191&lt;/p&gt;
&lt;p&gt;The section between &amp;#39;rgb(&amp;#39; and the final &amp;#39;)&amp;#39; contains multiple overlapping groups.&lt;/p&gt;
&lt;p&gt;Since all three infinitely repeating groups accept spaces, a long string of spaces causes catastrophic backtracking when it is not followed by a closing parenthesis.&lt;/p&gt;
&lt;p&gt;The complexity is cubic, so doubling the length of the malicious string of spaces makes processing take 8 times as long.&lt;/p&gt;
&lt;p&gt;## Reproduction steps&lt;/p&gt;
&lt;p&gt;Create a malicious SVG of the form:&lt;/p&gt;
&lt;p&gt;&amp;lt;svg width=&amp;#34;1&amp;#34; height=&amp;#34;1&amp;#34;&amp;gt;&amp;lt;rect fill=&amp;#34;rgb(                     ;&amp;#34;/&amp;gt;&amp;lt;/svg&amp;gt;&lt;/p&gt;
&lt;p&gt;with the following code:&lt;/p&gt;
&lt;p&gt;&amp;#39;&amp;lt;svg width=&amp;#34;1&amp;#34; height=&amp;#34;1&amp;#34;&amp;gt;&amp;lt;rect fill=&amp;#34;rgb(&amp;#39; + (&amp;#39; &amp;#39; * 3456) + &amp;#39;;&amp;#34;/&amp;gt;&amp;lt;/svg&amp;gt;&amp;#39;&lt;/p&gt;
&lt;p&gt;Note that there is no closing parenthesis before the semi-colon.&lt;/p&gt;
&lt;p&gt;Run cairosvg e.g.:&lt;/p&gt;
&lt;p&gt;cairosvg cairo-redos.svg -o x.png&lt;/p&gt;
&lt;p&gt;and notice t…&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: CairoSVG&lt;/p&gt;
&lt;p&gt;# Doyensec Vulnerability Advisory&lt;/p&gt;
&lt;p&gt;* Regular Expression Denial of Service (REDoS) in cairosvg
* Affected Product: CairoSVG v2.0.0+
* Vendor: https://github.com/Kozea
* Severity: Medium
* Vulnerability Class: Denial of Service
* Author(s): Ben Caller ([Doyensec](https://doyensec.com))&lt;/p&gt;
&lt;p&gt;## Summary&lt;/p&gt;
&lt;p&gt;When processing SVG files, the python package CairoSVG uses two regular expressions which are vulnerable to Regular Expression Denial of Service (REDoS).
If an attacker provides a malicious SVG, it can make cairosvg get stuck processing the file for a very long time.&lt;/p&gt;
&lt;p&gt;## Technical description&lt;/p&gt;
&lt;p&gt;The vulnerable regular expressions are&lt;/p&gt;
&lt;p&gt;https://github.com/Kozea/CairoSVG/blob/9c4a982b9a021280ad90e89707eacc1d114e4ac4/cairosvg/colors.py#L190-L191&lt;/p&gt;
&lt;p&gt;The section between &amp;#39;rgb(&amp;#39; and the final &amp;#39;)&amp;#39; contains multiple overlapping groups.&lt;/p&gt;
&lt;p&gt;Since all three infinitely repeating groups accept spaces, a long string of spaces causes catastrophic backtracking when it is not followed by a closing parenthesis.&lt;/p&gt;
&lt;p&gt;The complexity is cubic, so doubling the length of the malicious string of spaces makes processing take 8 times as long.&lt;/p&gt;
&lt;p&gt;## Reproduction steps&lt;/p&gt;
&lt;p&gt;Create a malicious SVG of the form:&lt;/p&gt;
&lt;p&gt;&amp;lt;svg width=&amp;#34;1&amp;#34; height=&amp;#34;1&amp;#34;&amp;gt;&amp;lt;rect fill=&amp;#34;rgb(                     ;&amp;#34;/&amp;gt;&amp;lt;/svg&amp;gt;&lt;/p&gt;
&lt;p&gt;with the following code:&lt;/p&gt;
&lt;p&gt;&amp;#39;&amp;lt;svg width=&amp;#34;1&amp;#34; height=&amp;#34;1&amp;#34;&amp;gt;&amp;lt;rect fill=&amp;#34;rgb(&amp;#39; + (&amp;#39; &amp;#39; * 3456) + &amp;#39;;&amp;#34;/&amp;gt;&amp;lt;/svg&amp;gt;&amp;#39;&lt;/p&gt;
&lt;p&gt;Note that there is no closing parenthesis before the semi-colon.&lt;/p&gt;
&lt;p&gt;Run cairosvg e.g.:&lt;/p&gt;
&lt;p&gt;cairosvg cairo-redos.svg -o x.png&lt;/p&gt;
&lt;p&gt;and notice t…&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-hq37-853p-g5cf</guid>
    </item>
    <item>
      <title>gsd-2021-21236</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2021-21236</link>
      <description>gsd-2021-21236</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2021-21236</guid>
    </item>
    <item>
      <title>openSUSE-SU-2023:0260-1 — Security update for python-CairoSVG</title>
      <link>https://cve.radiocsirt.org/vuln/opensuse-su-2023:0260-1</link>
      <description>&lt;p&gt;Security update for python-CairoSVG&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;Security update for python-CairoSVG&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/opensuse-su-2023:0260-1</guid>
    </item>
    <item>
      <title>PYSEC-2021-5</title>
      <link>https://cve.radiocsirt.org/vuln/pysec-2021-5</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: cairosvg&lt;/p&gt;
&lt;p&gt;CairoSVG is a Python (pypi) package. CairoSVG is an SVG converter based on Cairo. In CairoSVG before version 2.5.1, there is a regular expression denial of service (REDoS) vulnerability. When processing SVG files, the python package CairoSVG uses two regular expressions which are vulnerable to Regular Expression Denial of Service (REDoS). If an attacker provides a malicious SVG, it can make cairosvg get stuck processing the file for a very long time. This is fixed in version 2.5.1. See Referenced GitHub advisory for more information.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; PyPI: cairosvg&lt;/p&gt;
&lt;p&gt;CairoSVG is a Python (pypi) package. CairoSVG is an SVG converter based on Cairo. In CairoSVG before version 2.5.1, there is a regular expression denial of service (REDoS) vulnerability. When processing SVG files, the python package CairoSVG uses two regular expressions which are vulnerable to Regular Expression Denial of Service (REDoS). If an attacker provides a malicious SVG, it can make cairosvg get stuck processing the file for a very long time. This is fixed in version 2.5.1. See Referenced GitHub advisory for more information.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/pysec-2021-5</guid>
    </item>
    <item>
      <title>UBUNTU-CVE-2021-21236</title>
      <link>https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-21236</link>
      <description>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: cairosvg, Ubuntu:18.04:LTS: cairosvg, Ubuntu:20.04:LTS: cairosvg, Ubuntu:22.04:LTS: cairosvg, Ubuntu:24.04:LTS: cairosvg, Ubuntu:25.10: cairosvg, Ubuntu:26.04:LTS: cairosvg&lt;/p&gt;
&lt;p&gt;CairoSVG is a Python (pypi) package. CairoSVG is an SVG converter based on Cairo. In CairoSVG before version 2.5.1, there is a regular expression denial of service (REDoS) vulnerability. When processing SVG files, the python package CairoSVG uses two regular expressions which are vulnerable to Regular Expression Denial of Service (REDoS). If an attacker provides a malicious SVG, it can make cairosvg get stuck processing the file for a very long time. This is fixed in version 2.5.1. See Referenced GitHub advisory for more information.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;&lt;strong&gt;Affected:&lt;/strong&gt; Ubuntu:16.04:LTS: cairosvg, Ubuntu:18.04:LTS: cairosvg, Ubuntu:20.04:LTS: cairosvg, Ubuntu:22.04:LTS: cairosvg, Ubuntu:24.04:LTS: cairosvg, Ubuntu:25.10: cairosvg, Ubuntu:26.04:LTS: cairosvg&lt;/p&gt;
&lt;p&gt;CairoSVG is a Python (pypi) package. CairoSVG is an SVG converter based on Cairo. In CairoSVG before version 2.5.1, there is a regular expression denial of service (REDoS) vulnerability. When processing SVG files, the python package CairoSVG uses two regular expressions which are vulnerable to Regular Expression Denial of Service (REDoS). If an attacker provides a malicious SVG, it can make cairosvg get stuck processing the file for a very long time. This is fixed in version 2.5.1. See Referenced GitHub advisory for more information.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ubuntu-cve-2021-21236</guid>
    </item>
  </channel>
</rss>
