CVE-2020-21533: Buffer Overflow
Published Sep 16, 2021
·Updated
fig2dev 3.2.7b contains a stack buffer overflow in the readtextobject function in read.c.
Affected Software
2 affected components
Xfig Project Fig2dev=3.2.7-b
Debian Debian Linux=9.0
Event History
Sep 16, 2021
CVE Published
via MITRE·08:27 PM
Data Sourced
via MITRE·08:27 PM
Description
Frequently Asked Questions
1
What is CVE-2020-21533?
CVE-2020-21533 is a vulnerability in fig2dev 3.2.7b where a stack buffer overflow occurs in the read_textobject function in read.c.
2
What software is affected by CVE-2020-21533?
fig2dev 3.2.7b and Debian Linux version 9.0 are affected by CVE-2020-21533.
3
What is the severity of CVE-2020-21533?
CVE-2020-21533 is considered a medium severity vulnerability with a severity value of 5.5.
4
How can I fix CVE-2020-21533?
To fix CVE-2020-21533, it is recommended to update fig2dev to a version that includes the patch for the vulnerability.
5
Where can I find more information about CVE-2020-21533?
More information about CVE-2020-21533 can be found in the Debian LTS announcement and the SourceForge ticket.