CVE-2020-21534: Buffer Overflow
Published Sep 16, 2021
·Updated
fig2dev 3.2.7b contains a global buffer overflow in the getline function in read.c.
Affected Software
2 affected components
Xfig Project Fig2dev=3.2.7-b
Debian Debian Linux=9.0
Event History
Sep 16, 2021
CVE Published
via MITRE·08:27 PM
Data Sourced
via MITRE·08:27 PM
Description
Frequently Asked Questions
1
What is CVE-2020-21534?
CVE-2020-21534 is a vulnerability in fig2dev 3.2.7b that allows for a global buffer overflow in the get_line function in read.c.
2
What is the severity of CVE-2020-21534?
The severity of CVE-2020-21534 is medium with a CVSS score of 5.5.
3
How does CVE-2020-21534 affect the software?
CVE-2020-21534 affects fig2dev 3.2.7b and Debian Linux 9.0.
4
Is there a fix available for CVE-2020-21534?
Yes, a fix is available. It is recommended to update fig2dev to a version that addresses the vulnerability.
5
Where can I find more information about CVE-2020-21534?
More information about CVE-2020-21534 can be found at the provided references: https://lists.debian.org/debian-lts-announce/2021/10/msg00002.html and https://sourceforge.net/p/mcj/tickets/58/