### [CVE-2017-7475](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-7475) ![](https://img.shields.io/static/v1?label=Product&message=Cairo&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=%3D%201.15.4%20&color=brighgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=NULL%20pointer%20dereference&color=brighgreen) ### Description Cairo version 1.15.4 is vulnerable to a NULL pointer dereference related to the FT_Load_Glyph and FT_Render_Glyph resulting in an application crash. ### POC #### Reference - https://bugs.freedesktop.org/show_bug.cgi?id=100763 #### Github - https://github.com/adegoodyer/kubernetes-admin-toolkit - https://github.com/facebookincubator/meta-fbvuln - https://github.com/mrash/afl-cve