CVE-2019-19746
12.12.2019, 03:15
make_arrow in arrow.c in Xfig fig2dev 3.2.7b allows a segmentation fault and out-of-bounds write because of an integer overflow via a large arrow type.Enginsight
| Vendor | Product | Version |
|---|---|---|
| fig2dev_project | fig2dev | 3.2.7b:b |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| fig2dev |
| ||||||||||||||||||||||||||||
| transfig |
|
References