Integer overflow in the write_png function in cairo 1.14.6 allows remote attackers to cause a denial of service (invalid pointer dereference) via a large svg file.
https://security.gentoo.org/glsa/201904-01
https://bugzilla.redhat.com/show_bug.cgi?id=1312337
https://bugs.freedesktop.org/show_bug.cgi?id=98165
https://bugs.freedesktop.org/attachment.cgi?id=127421