cbcvebase.

Fig2Dev Project Fig2Dev vulnerabilities

32 known vulnerabilities affecting fig2dev_project/fig2dev.

Total CVEs
32
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH4MEDIUM28

Vulnerabilities

Page 2 of 2
CVE-2020-21531P4MEDIUMCVSS 5.5≥ 0, < 1:3.2.8-12021-09-16
CVE-2020-21531 [MEDIUM] CVE-2020-21531: fig2dev 3 fig2dev 3.2.7b contains a global buffer overflow in the conv_pattern_index function in gencgm.c.
osv
CVE-2020-21534P4MEDIUMCVSS 5.5≥ 0, < 1:3.2.7b-32021-09-16
CVE-2020-21534 [MEDIUM] CVE-2020-21534: fig2dev 3 fig2dev 3.2.7b contains a global buffer overflow in the get_line function in read.c.
osv
CVE-2020-21682P4MEDIUMCVSS 5.5v3.2.7b2021-08-10
CVE-2020-21682 [MEDIUM] CWE-120 CVE-2020-21682: A global buffer overflow in the set_fill component in genge.c of fig2dev 3.2.7b allows attackers to A global buffer overflow in the set_fill component in genge.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into ge format.
nvdosv
CVE-2020-21681P4MEDIUMCVSS 5.5v3.2.7b2021-08-10
CVE-2020-21681 [MEDIUM] CWE-120 CVE-2020-21681: A global buffer overflow in the set_color component in genge.c of fig2dev 3.2.7b allows attackers to A global buffer overflow in the set_color component in genge.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into ge format.
nvdosv
CVE-2021-37530P4MEDIUMCVSS 5.5≤ 3.2.8a2022-01-12
CVE-2021-37530 [MEDIUM] CWE-787 CVE-2021-37530: A denial of service vulnerabiity exists in fig2dev through 3.28a due to a segfault in the open_strea A denial of service vulnerabiity exists in fig2dev through 3.28a due to a segfault in the open_stream function in readpics.c.
nvdosv
CVE-2020-21684P4MEDIUMCVSS 5.5v3.2.7b2021-08-10
CVE-2020-21684 [MEDIUM] CWE-120 CVE-2020-21684: A global buffer overflow in the put_font in genpict2e.c of fig2dev 3.2.7b allows attackers to cause A global buffer overflow in the put_font in genpict2e.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pict2e format.
nvdosv
CVE-2020-21683P4MEDIUMCVSS 5.5v3.2.7b2021-08-10
CVE-2020-21683 [MEDIUM] CWE-120 CVE-2020-21683: A global buffer overflow in the shade_or_tint_name_after_declare_color in genpstricks.c of fig2dev 3 A global buffer overflow in the shade_or_tint_name_after_declare_color in genpstricks.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pstricks format.
nvdosv
CVE-2020-21678P4MEDIUMCVSS 5.5v3.2.7b2021-08-10
CVE-2020-21678 [MEDIUM] CWE-120 CVE-2020-21678: A global buffer overflow in the genmp_writefontmacro_latex component in genmp.c of fig2dev 3.2.7b al A global buffer overflow in the genmp_writefontmacro_latex component in genmp.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into mp format.
nvdosv
CVE-2021-37529P4MEDIUMCVSS 5.5≤ 3.2.8a2022-01-12
CVE-2021-37529 [MEDIUM] CWE-415 CVE-2021-37529: A double-free vulnerability exists in fig2dev through 3.28a is affected by: via the free_stream func A double-free vulnerability exists in fig2dev through 3.28a is affected by: via the free_stream function in readpics.c, which could cause a denial of service (context-dependent).
nvdosv
CVE-2021-32280P4MEDIUMCVSS 5.5≥ 0, < 1:3.2.7b-52021-09-20
CVE-2021-32280 [MEDIUM] CVE-2021-32280: An issue was discovered in fig2dev before 3 An issue was discovered in fig2dev before 3.2.8.. A NULL pointer dereference exists in the function compute_closed_spline() located in trans_spline.c. It allows an attacker to cause Denial of Service. The fixed version of fig2dev is 3.2.8.
osv
CVE-2020-21535P4MEDIUMCVSS 5.5≥ 0, < 1:3.2.7b-32021-09-16
CVE-2020-21535 [MEDIUM] CVE-2020-21535: fig2dev 3 fig2dev 3.2.7b contains a segmentation fault in the gencgm_start function in gencgm.c.
osv
CVE-2020-21530P4MEDIUMCVSS 5.5≥ 0, < 1:3.2.7b-32021-09-16
CVE-2020-21530 [MEDIUM] CVE-2020-21530: fig2dev 3 fig2dev 3.2.7b contains a segmentation fault in the read_objects function in read.c.
osv
Fig2Dev Project Fig2Dev vulnerabilities | cvebase