CVE-2025-50422 describes an assertion failure in Cairo versions up to 1.18.4, specifically within the _cairo_ft_unscaled_font_fini function in cairo-ft-font.c, which also impacts Poppler through version 25.08.0. This vulnerability has a low CVSS score of 2.9, indicating a low impact (availability) and requiring high attack complexity, with no user interaction needed. There is currently no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 0, <= 1.18.4CPE match | cpe:2.3:a:cairographics:cairo:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.