CVE-2020-21683

Related Vulnerabilities: CVE-2020-21683  

A global buffer overflow in the shade_or_tint_name_after_declare_color in genpstricks.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pstricks format.

Description

The MITRE CVE dictionary describes this issue as:

A global buffer overflow in the shade_or_tint_name_after_declare_color in genpstricks.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pstricks format.

Additional Information

  • Bugzilla 1992790: CVE-2020-21683 transfig: A global buffer overflow in the shade_or_tint_name_after_declare_color in genpstricks.c could result in a denial of service
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
  • FAQ: Frequently asked questions about CVE-2020-21683