Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-37529

Опубликовано: 12 янв. 2022
Источник: debian
EPSS Низкий

Описание

A double-free vulnerability exists in fig2dev through 3.28a is affected by: via the free_stream function in readpics.c, which could cause a denial of service (context-dependent).

Пакеты

ПакетСтатусВерсия исправленияРелизТип
fig2devfixed1:3.2.8b-1package
fig2devfixed1:3.2.8-3+deb11u1bullseyepackage
fig2devnot-affectedbusterpackage
fig2devnot-affectedstretchpackage
transfigremovedpackage

Примечания

  • https://sourceforge.net/p/mcj/tickets/125/

  • https://sourceforge.net/p/mcj/fig2dev/ci/899ea1277387ca9e9853bf61d29b7419d5692691/

  • Introduced by https://sourceforge.net/p/mcj/fig2dev/ci/bc3beba96605f9db5a063061ea28077937959ae2/ (3.2.8)

EPSS

Процентиль: 48%
0.00248
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 4 лет назад

A double-free vulnerability exists in fig2dev through 3.28a is affected by: via the free_stream function in readpics.c, which could cause a denial of service (context-dependent).

CVSS3: 5.5
redhat
около 4 лет назад

A double-free vulnerability exists in fig2dev through 3.28a is affected by: via the free_stream function in readpics.c, which could cause a denial of service (context-dependent).

CVSS3: 5.5
nvd
около 4 лет назад

A double-free vulnerability exists in fig2dev through 3.28a is affected by: via the free_stream function in readpics.c, which could cause a denial of service (context-dependent).

github
около 4 лет назад

A double-free vulnerability exists in fig2dev through 3.28a is affected by: via the free_stream function in readpics.c, which could cause a denial of service (context-dependent).

CVSS3: 5.5
fstec
около 4 лет назад

Уязвимость функции free_stream утилиты для преобразования файлов с расширением fig fig2dev , связанная с ошибкой повторного освобождения памяти, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 48%
0.00248
Низкий