5.5
CVSSv3

CVE-2019-14275

Published: 26/07/2019 Updated: 01/03/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

Xfig fig2dev 3.2.7a has a stack-based buffer overflow in the calc_arrow function in bound.c.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

xfig project fig2dev 3.2.7

debian debian linux 8.0

opensuse leap 15.1

opensuse leap 15.2

Vendor Advisories

Debian Bug report logs - #933075 fig2dev: CVE-2019-14275 Package: src:fig2dev; Maintainer for src:fig2dev is Roland Rosenfeld <roland@debianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Fri, 26 Jul 2019 11:51:09 UTC Severity: normal Tags: security, upstream Found in versions fig2dev/1:327a-6, ...