CVE-2025-50422

Name
CVE-2025-50422
Description
Cairo through 1.18.4, as used in Poppler through 25.08.0, has an "unscaled->face == NULL" assertion failure for _cairo_ft_unscaled_font_fini in cairo-ft-font.c.
NVD Severity
unknown
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
cve@mitre.org http://freedesktop.com
cve@mitre.org http://poppler.com
cve@mitre.org https://github.com/Landw-hub/CVE-2025-50422
cve@mitre.org https://gitlab.freedesktop.org/cairo/cairo/-/merge_requests/621
cve@mitre.org https://gitlab.freedesktop.org/poppler/poppler/-/issues/1591
cve@mitre.org https://gitlab.freedesktop.org/poppler/poppler/-/issues/1591#note_3045081

Match rules

CPE URI Source package Min version Max version
cairo >= 0 <= 1.18.4

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
cairo edge-main 1.18.4-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
cairo edge-main 1.18.2-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
cairo edge-main 1.17.4-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
cairo edge-main 1.16.0-r3 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
cairo edge-main 1.16.0-r2 None possibly vulnerable
cairo edge-main 1.16.0-r1 None possibly vulnerable
cairo 3.22-main 1.18.4-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
cairo 3.22-main 1.17.4-r1 None possibly vulnerable
cairo 3.22-main 1.16.0-r2 None possibly vulnerable
cairo 3.22-main 1.16.0-r1 None possibly vulnerable
cairo 3.21-main 1.18.4-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
cairo 3.21-main 1.18.2-r1 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
cairo 3.21-main 1.17.4-r1 None possibly vulnerable
cairo 3.21-main 1.16.0-r2 None possibly vulnerable
cairo 3.21-main 1.16.0-r1 None possibly vulnerable
cairo 3.20-main 1.18.4-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
cairo 3.20-main 1.18.0-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
cairo 3.20-main 1.17.4-r1 None possibly vulnerable
cairo 3.20-main 1.16.0-r2 None possibly vulnerable
cairo 3.20-main 1.16.0-r1 None possibly vulnerable
cairo 3.19-main 1.18.4-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
cairo 3.19-main 1.18.0-r0 Natanael Copa <ncopa@alpinelinux.org> possibly vulnerable
cairo 3.19-main 1.17.4-r1 None possibly vulnerable
cairo 3.19-main 1.16.0-r2 None possibly vulnerable
cairo 3.19-main 1.16.0-r1 None possibly vulnerable