Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-79767
HistoryAug 11, 2021 - 12:00 a.m.

fig2dev buffer overflow vulnerability (CNVD-2021-79767)

2021-08-1100:00:00
China National Vulnerability Database
www.cnvd.org.cn
10

0.001 Low

EPSS

Percentile

20.2%

fig2dev is used to convert .fig files to various graphics languages and formats. A global buffer overflow vulnerability exists in shade_or_tint_name_after_declare_color in genpstricks.c in fig2dev version 3.2.7b. An attacker could exploit this vulnerability to cause a denial of service by converting the xfig file to pstricks format.