USN-5264-1: Graphviz vulnerabilities

Related Vulnerabilities: CVE-2018-10196   CVE-2019-11023   CVE-2020-18032  

Several security issues were fixed in graphviz.

Details

It was discovered that graphviz contains null pointer dereference
vulnerabilities. Exploitation via a specially crafted input file
can cause a denial of service.
(CVE-2018-10196, CVE-2019-11023)

It was discovered that graphviz contains a buffer overflow
vulnerability. Exploitation via a specially crafted input file can cause
a denial of service or possibly allow for arbitrary code execution.
(CVE-2020-18032)