CVE-2020-25559: Double Free
Published Sep 16, 2020
·Updated
gnuplot 5.5 is affected by double free when executing printsetoutput. This may result in context-dependent arbitrary code execution.
Affected Software
2 affected components
Gnuplot Project Gnuplot=5.5.0
gnuplot gnuplot=5.5.0
Remediation
Patch Available
Event History
Sep 16, 2020
CVE Published
via MITRE·12:38 PM
Data Sourced
via MITRE·12:38 PM
Description
Data Sourced
via NVD·01:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-25559?
CVE-2020-25559 has been classified with a severity level that may allow for context-dependent arbitrary code execution.
2
How do I fix CVE-2020-25559?
To fix CVE-2020-25559, update Gnuplot to a patched version that addresses the double free vulnerability.
3
Which version of Gnuplot is affected by CVE-2020-25559?
Gnuplot version 5.5.0 is specifically affected by CVE-2020-25559.
4
What components are involved in CVE-2020-25559?
CVE-2020-25559 involves a double free vulnerability that can occur during the execution of print_set_output.
5
What are the potential implications of CVE-2020-25559?
The implications of CVE-2020-25559 include the risk of arbitrary code execution in context-sensitive scenarios.