CVE-2020-21676

Related Vulnerabilities: CVE-2020-21676  

A stack-based buffer overflow in the genpstrx_text() component in genpstricks.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pstricks format.

Description

The MITRE CVE dictionary describes this issue as:

A stack-based buffer overflow in the genpstrx_text() component in genpstricks.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pstricks format.

Additional Information

  • Bugzilla 1992806: CVE-2020-21676 transfig: A stack-based buffer overflow in the genpstrx_text() component in genpstricks.c could result in a denial of service
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
  • FAQ: Frequently asked questions about CVE-2020-21676