CVE-2020-21680

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
10/08/2021
Last modified:
07/12/2022

Description

A stack-based buffer overflow in the put_arrow() component in genpict2e.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pict2e format.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:fig2dev_project:fig2dev:3.2.7b:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools