Information on source package fig2dev

Available versions

ReleaseVersion
stretch1:3.2.6a-2+deb9u4
buster1:3.2.7a-5+deb10u4
buster (security)1:3.2.7a-5+deb10u5
bullseye1:3.2.8-3+deb11u1
bookworm1:3.2.8b-3
trixie1:3.2.9-3
sid1:3.2.9-4

Open unimportant issues

BugstretchbusterbullseyebookwormtrixiesidDescription
CVE-2020-21684vulnerablevulnerablefixedfixedfixedfixedA global buffer overflow in the put_font in genpict2e.c of fig2dev 3.2 ...
CVE-2020-21683vulnerablevulnerablefixedfixedfixedfixedA global buffer overflow in the shade_or_tint_name_after_declare_color ...
CVE-2020-21682vulnerablevulnerablefixedfixedfixedfixedA global buffer overflow in the set_fill component in genge.c of fig2d ...
CVE-2020-21681vulnerablevulnerablefixedfixedfixedfixedA global buffer overflow in the set_color component in genge.c of fig2 ...
CVE-2020-21680vulnerablevulnerablefixedfixedfixedfixedA stack-based buffer overflow in the put_arrow() component in genpict2 ...
CVE-2020-21678vulnerablevulnerablefixedfixedfixedfixedA global buffer overflow in the genmp_writefontmacro_latex component i ...
CVE-2019-19746vulnerablefixedfixedfixedfixedfixedmake_arrow in arrow.c in Xfig fig2dev 3.2.7b allows a segmentation fau ...
CVE-2018-16140vulnerablefixedfixedfixedfixedfixedA buffer underwrite vulnerability in get_line() (read.c) in fig2dev 3. ...

Resolved issues

BugDescription
CVE-2021-37530A denial of service vulnerabiity exists in fig2dev through 3.28a due t ...
CVE-2021-37529A double-free vulnerability exists in fig2dev through 3.28a is affecte ...
CVE-2021-32280An issue was discovered in fig2dev before 3.2.8.. A NULL pointer deref ...
CVE-2021-3561An Out of Bounds flaw was found fig2dev version 3.2.8a. A flawed bound ...
CVE-2020-21676A stack-based buffer overflow in the genpstrx_text() component in genp ...
CVE-2020-21675A stack-based buffer overflow in the genptk_text component in genptk.c ...
CVE-2020-21535fig2dev 3.2.7b contains a segmentation fault in the gencgm_start funct ...
CVE-2020-21534fig2dev 3.2.7b contains a global buffer overflow in the get_line funct ...
CVE-2020-21533fig2dev 3.2.7b contains a stack buffer overflow in the read_textobject ...
CVE-2020-21532fig2dev 3.2.7b contains a global buffer overflow in the setfigfont fun ...
CVE-2020-21531fig2dev 3.2.7b contains a global buffer overflow in the conv_pattern_i ...
CVE-2020-21530fig2dev 3.2.7b contains a segmentation fault in the read_objects funct ...
CVE-2020-21529fig2dev 3.2.7b contains a stack buffer overflow in the bezier_spline f ...
CVE-2019-19797read_colordef in read.c in Xfig fig2dev 3.2.7b has an out-of-bounds wr ...
CVE-2019-19555read_textobject in read.c in Xfig fig2dev 3.2.7b has a stack-based buf ...
CVE-2019-14275Xfig fig2dev 3.2.7a has a stack-based buffer overflow in the calc_arro ...
CVE-2017-16899An array index error in the fig2dev program in Xfig 3.2.6a allows remo ...

Security announcements

DSA / DLADescription
DLA-3304-1fig2dev - security update
DLA-2778-1fig2dev - security update

Search for package or bug name: Reporting problems