Debian Fig2Dev vulnerabilities
32 known vulnerabilities affecting debian/fig2dev.
Total CVEs
32
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH3MEDIUM19LOW10
Vulnerabilities
Page 2 of 2
CVE-2020-21531P4MEDIUMCVSS 5.5fixed in fig2dev 1:3.2.8-1 (bookworm)2020
CVE-2020-21531 [MEDIUM] CVE-2020-21531: fig2dev - fig2dev 3.2.7b contains a global buffer overflow in the conv_pattern_index funct...
fig2dev 3.2.7b contains a global buffer overflow in the conv_pattern_index function in gencgm.c.
Scope: local
bookworm: resolved (fixed in 1:3.2.8-1)
bullseye: resolved (fixed in 1:3.2.8-1)
forky: resolved (fixed in 1:3.2.8-1)
sid: resolved (fixed in 1:3.2.8-1)
trixie: resolved (fixed in 1:3.2.8-1)
debian
CVE-2020-21534P4MEDIUMCVSS 5.5fixed in fig2dev 1:3.2.7b-3 (bookworm)2020
CVE-2020-21534 [MEDIUM] CVE-2020-21534: fig2dev - fig2dev 3.2.7b contains a global buffer overflow in the get_line function in rea...
fig2dev 3.2.7b contains a global buffer overflow in the get_line function in read.c.
Scope: local
bookworm: resolved (fixed in 1:3.2.7b-3)
bullseye: resolved (fixed in 1:3.2.7b-3)
forky: resolved (fixed in 1:3.2.7b-3)
sid: resolved (fixed in 1:3.2.7b-3)
trixie: resolved (fixed in 1:3.2.7b-3)
debian
CVE-2020-21682P4LOWCVSS 5.5fixed in fig2dev 1:3.2.8-1 (bookworm)2020
CVE-2020-21682 [MEDIUM] CVE-2020-21682: fig2dev - A global buffer overflow in the set_fill component in genge.c of fig2dev 3.2.7b ...
A global buffer overflow in the set_fill component in genge.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into ge format.
Scope: local
bookworm: resolved (fixed in 1:3.2.8-1)
bullseye: resolved (fixed in 1:3.2.8-1)
forky: resolved (fixed in 1:3.2.8-1)
sid: resolved (fixed in 1:3.2.8-1)
trixie: resolved (fixed in
debian
CVE-2020-21681P4LOWCVSS 5.5fixed in fig2dev 1:3.2.8-1 (bookworm)2020
CVE-2020-21681 [MEDIUM] CVE-2020-21681: fig2dev - A global buffer overflow in the set_color component in genge.c of fig2dev 3.2.7b...
A global buffer overflow in the set_color component in genge.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into ge format.
Scope: local
bookworm: resolved (fixed in 1:3.2.8-1)
bullseye: resolved (fixed in 1:3.2.8-1)
forky: resolved (fixed in 1:3.2.8-1)
sid: resolved (fixed in 1:3.2.8-1)
trixie: resolved (fixed i
debian
CVE-2021-37530P4MEDIUMCVSS 5.5fixed in fig2dev 1:3.2.8b-1 (bookworm)2021
CVE-2021-37530 [MEDIUM] CVE-2021-37530: fig2dev - A denial of service vulnerabiity exists in fig2dev through 3.28a due to a segfau...
A denial of service vulnerabiity exists in fig2dev through 3.28a due to a segfault in the open_stream function in readpics.c.
Scope: local
bookworm: resolved (fixed in 1:3.2.8b-1)
bullseye: resolved (fixed in 1:3.2.8-3+deb11u1)
forky: resolved (fixed in 1:3.2.8b-1)
sid: resolved (fixed in 1:3.2.8b-1)
trixie: resolved (fixed in 1:3.2.8b-1)
debian
CVE-2020-21684P4LOWCVSS 5.5fixed in fig2dev 1:3.2.8-1 (bookworm)2020
CVE-2020-21684 [MEDIUM] CVE-2020-21684: fig2dev - A global buffer overflow in the put_font in genpict2e.c of fig2dev 3.2.7b allows...
A global buffer overflow in the put_font in genpict2e.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pict2e format.
Scope: local
bookworm: resolved (fixed in 1:3.2.8-1)
bullseye: resolved (fixed in 1:3.2.8-1)
forky: resolved (fixed in 1:3.2.8-1)
sid: resolved (fixed in 1:3.2.8-1)
trixie: resolved (fixed in 1
debian
CVE-2020-21683P4LOWCVSS 5.5fixed in fig2dev 1:3.2.8-1 (bookworm)2020
CVE-2020-21683 [MEDIUM] CVE-2020-21683: fig2dev - A global buffer overflow in the shade_or_tint_name_after_declare_color in genpst...
A global buffer overflow in the shade_or_tint_name_after_declare_color in genpstricks.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pstricks format.
Scope: local
bookworm: resolved (fixed in 1:3.2.8-1)
bullseye: resolved (fixed in 1:3.2.8-1)
forky: resolved (fixed in 1:3.2.8-1)
sid: resolved (fixed in 1:3.2
debian
CVE-2020-21678P4LOWCVSS 5.5fixed in fig2dev 1:3.2.8-1 (bookworm)2020
CVE-2020-21678 [MEDIUM] CVE-2020-21678: fig2dev - A global buffer overflow in the genmp_writefontmacro_latex component in genmp.c ...
A global buffer overflow in the genmp_writefontmacro_latex component in genmp.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into mp format.
Scope: local
bookworm: resolved (fixed in 1:3.2.8-1)
bullseye: resolved (fixed in 1:3.2.8-1)
forky: resolved (fixed in 1:3.2.8-1)
sid: resolved (fixed in 1:3.2.8-1)
trixie:
debian
CVE-2021-37529P4MEDIUMCVSS 5.5fixed in fig2dev 1:3.2.8b-1 (bookworm)2021
CVE-2021-37529 [MEDIUM] CVE-2021-37529: fig2dev - A double-free vulnerability exists in fig2dev through 3.28a is affected by: via ...
A double-free vulnerability exists in fig2dev through 3.28a is affected by: via the free_stream function in readpics.c, which could cause a denial of service (context-dependent).
Scope: local
bookworm: resolved (fixed in 1:3.2.8b-1)
bullseye: resolved (fixed in 1:3.2.8-3+deb11u1)
forky: resolved (fixed in 1:3.2.8b-1)
sid: resolved (fixed in 1:3.2.8b-1)
trixie: res
debian
CVE-2021-32280P4MEDIUMCVSS 5.5fixed in fig2dev 1:3.2.7b-5 (bookworm)2021
CVE-2021-32280 [MEDIUM] CVE-2021-32280: fig2dev - An issue was discovered in fig2dev before 3.2.8.. A NULL pointer dereference exi...
An issue was discovered in fig2dev before 3.2.8.. A NULL pointer dereference exists in the function compute_closed_spline() located in trans_spline.c. It allows an attacker to cause Denial of Service. The fixed version of fig2dev is 3.2.8.
Scope: local
bookworm: resolved (fixed in 1:3.2.7b-5)
bullseye: resolved (fixed in 1:3.2.7b-5)
forky: resolved (fixed in 1:3.2
debian
CVE-2020-21535P4MEDIUMCVSS 5.5fixed in fig2dev 1:3.2.7b-3 (bookworm)2020
CVE-2020-21535 [MEDIUM] CVE-2020-21535: fig2dev - fig2dev 3.2.7b contains a segmentation fault in the gencgm_start function in gen...
fig2dev 3.2.7b contains a segmentation fault in the gencgm_start function in gencgm.c.
Scope: local
bookworm: resolved (fixed in 1:3.2.7b-3)
bullseye: resolved (fixed in 1:3.2.7b-3)
forky: resolved (fixed in 1:3.2.7b-3)
sid: resolved (fixed in 1:3.2.7b-3)
trixie: resolved (fixed in 1:3.2.7b-3)
debian
CVE-2020-21530P4MEDIUMCVSS 5.5fixed in fig2dev 1:3.2.7b-3 (bookworm)2020
CVE-2020-21530 [MEDIUM] CVE-2020-21530: fig2dev - fig2dev 3.2.7b contains a segmentation fault in the read_objects function in rea...
fig2dev 3.2.7b contains a segmentation fault in the read_objects function in read.c.
Scope: local
bookworm: resolved (fixed in 1:3.2.7b-3)
bullseye: resolved (fixed in 1:3.2.7b-3)
forky: resolved (fixed in 1:3.2.7b-3)
sid: resolved (fixed in 1:3.2.7b-3)
trixie: resolved (fixed in 1:3.2.7b-3)
debian
← Previous2 / 2