Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-25559

Опубликовано: 16 сент. 2020
Источник: debian

Описание

gnuplot 5.5 is affected by double free when executing print_set_output. This may result in context-dependent arbitrary code execution.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gnuplotfixed6.0.0+dfsg1-1package

Примечания

  • https://sourceforge.net/p/gnuplot/bugs/2312/

  • https://sourceforge.net/p/gnuplot/gnuplot-main/ci/052cbd17c3cbbc602ee080b2617d32a8417d7563/ (5.5)

  • No security impact, gnuplot can execute arbitrary commands and need to

  • come from a trusted source, see README.Debian.security (added in 5.2.6).

Связанные уязвимости

CVSS3: 7.8
ubuntu
больше 5 лет назад

gnuplot 5.5 is affected by double free when executing print_set_output. This may result in context-dependent arbitrary code execution.

CVSS3: 7.8
redhat
больше 5 лет назад

gnuplot 5.5 is affected by double free when executing print_set_output. This may result in context-dependent arbitrary code execution.

CVSS3: 7.8
nvd
больше 5 лет назад

gnuplot 5.5 is affected by double free when executing print_set_output. This may result in context-dependent arbitrary code execution.

suse-cvrf
почти 5 лет назад

Security update for gnuplot

suse-cvrf
почти 5 лет назад

Security update for gnuplot