Am Fri, Jul 08, 2022 at 04:31:10PM +0200 schrieb Moritz Mühlenhoff: > Source: svgpp > X-Debbugs-CC: t...@security.debian.org > Severity: normal > Tags: security > > Hi, > > The following vulnerability was published for svgpp. > > CVE-2021-44960[0]: > | In SVGPP SVG++ library 1.3.0, the XMLDocument::getRoot function in the > | renderDocument function handled the XMLDocument object improperly, > | returning a null pointer in advance at the second if, resulting in a > | null pointer reference behind the renderDocument function. > > https://github.com/svgpp/svgpp/issues/101
This was fixed in https://github.com/svgpp/svgpp/commit/0bc57f2cc6d9d86a0fa1ce73e508c2b5994b4b91 Could we get that fixed for Bookworm? Cheers, Moritz