Vulnerabilities
Vulnerable Software
Xfig Project:  >> Fig2dev  >> 3.2.7  Security Vulnerabilities
An issue was discovered in fig2dev before 3.2.8.. A NULL pointer dereference exists in the function compute_closed_spline() located in trans_spline.c. It allows an attacker to cause Denial of Service. The fixed version of fig2dev is 3.2.8.
CVSS Score
5.5
EPSS Score
0.001
Published
2021-09-20
fig2dev 3.2.7b contains a stack buffer overflow in the read_textobject function in read.c.
CVSS Score
5.5
EPSS Score
0.001
Published
2021-09-16
fig2dev 3.2.7b contains a global buffer overflow in the get_line function in read.c.
CVSS Score
5.5
EPSS Score
0.001
Published
2021-09-16
fig2dev 3.2.7b contains a segmentation fault in the gencgm_start function in gencgm.c.
CVSS Score
5.5
EPSS Score
0.001
Published
2021-09-16
fig2dev 3.2.7b contains a stack buffer overflow in the bezier_spline function in genepic.c.
CVSS Score
5.5
EPSS Score
0.002
Published
2021-09-16
fig2dev 3.2.7b contains a segmentation fault in the read_objects function in read.c.
CVSS Score
5.5
EPSS Score
0.001
Published
2021-09-16
fig2dev 3.2.7b contains a global buffer overflow in the conv_pattern_index function in gencgm.c.
CVSS Score
5.5
EPSS Score
0.001
Published
2021-09-16
fig2dev 3.2.7b contains a global buffer overflow in the setfigfont function in genepic.c.
CVSS Score
5.5
EPSS Score
0.001
Published
2021-09-16
read_colordef in read.c in Xfig fig2dev 3.2.7b has an out-of-bounds write.
CVSS Score
5.5
EPSS Score
0.001
Published
2019-12-15
Xfig fig2dev 3.2.7a has a stack-based buffer overflow in the calc_arrow function in bound.c.
CVSS Score
5.5
EPSS Score
0.002
Published
2019-07-26


Contact Us

Shodan ® - All rights reserved