Short Name |
HTTP:STC:DL:SVG-FILE-DOS |
|---|---|
Severity |
Medium |
Recommended |
No |
Category |
HTTP |
Keywords |
SVG File Processing Denial of Service |
Release Date |
2012/12/17 |
Update Number |
2211 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects attempts to exploit a known vulnerability in processing of SVG files. A successful attack can result in a denial-of-service condition.
Multiple vendors' SVG implementations are prone to an unspecified denial-of-service vulnerability. This issue arises when the software handles maliciously crafted SVG images. According to reports, the latest versions of Firefox, Evince, EoG, and GIMP are vulnerable.