CVE-2020-21675: Buffer Overflow
A stack-based buffer overflow in the genptktext component in genptk.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into ptk format.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2020-21675?
CVE-2020-21675 is a vulnerability in the genptk_text component in genptk.c of fig2dev 3.2.7b that allows attackers to cause a denial of service (DOS) through a stack-based buffer overflow.
How does CVE-2020-21675 impact the affected software?
CVE-2020-21675 impacts fig2dev 3.2.7b and Debian Linux 9.0, allowing attackers to cause a denial of service (DOS).
What is the severity of CVE-2020-21675?
CVE-2020-21675 has a severity rating of 5.5, which is considered medium.
How can I fix CVE-2020-21675?
To fix CVE-2020-21675, it is recommended to update to a patched version of fig2dev or apply the necessary security updates for Debian Linux.
Where can I find more information about CVE-2020-21675?
More information about CVE-2020-21675 can be found on the MITRE CWE website, Debian LTS announcement, and SourceForge ticket.