Описание
Xfig fig2dev 3.2.7a has a stack-based buffer overflow in the calc_arrow function in bound.c.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| fig2dev | fixed | 1:3.2.7a-7 | package | |
| fig2dev | fixed | 1:3.2.7a-5+deb10u1 | buster | package |
| fig2dev | fixed | 1:3.2.6a-2+deb9u2 | stretch | package |
| transfig | removed | package |
Примечания
https://sourceforge.net/p/mcj/tickets/52/
Crash in CLI tool, no security impact, hardening build
EPSS
Процентиль: 31%
0.00119
Низкий
Связанные уязвимости
CVSS3: 5.5
ubuntu
больше 6 лет назад
Xfig fig2dev 3.2.7a has a stack-based buffer overflow in the calc_arrow function in bound.c.
CVSS3: 6.6
redhat
больше 6 лет назад
Xfig fig2dev 3.2.7a has a stack-based buffer overflow in the calc_arrow function in bound.c.
CVSS3: 5.5
nvd
больше 6 лет назад
Xfig fig2dev 3.2.7a has a stack-based buffer overflow in the calc_arrow function in bound.c.
EPSS
Процентиль: 31%
0.00119
Низкий