CVE-2020-21682: Buffer Overflow
Published Aug 10, 2021
·Updated
A global buffer overflow in the setfill component in genge.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into ge format.
Affected Software
1 affected component
Fig2dev Project Fig2dev=3.2.7b
Remediation
Patch Available
Event History
Aug 10, 2021
CVE Published
via MITRE·08:19 PM
Data Sourced
via MITRE·08:19 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2020-21682.
2
What is the title of the vulnerability?
The title of the vulnerability is 'A global buffer overflow in the set_fill component in genge.c of fig2dev 3.2.7b allows attackers to ...'
3
What is the severity of CVE-2020-21682?
The severity of CVE-2020-21682 is medium with a severity value of 5.5.
4
What is the affected software?
The affected software is Fig2dev version 3.2.7b.
5
How can the vulnerability be exploited?
The vulnerability can be exploited by attackers through converting a xfig file into ge format.