CVE-2025-46399: Xfig: transfig: fig2dev segmentation fault vulnerability
A flaw was found in fig2dev. This vulnerability allows availability via local input manipulation via gengeitpspline function.
Other sources
Segmentation fault in fig2dev in version 3.2.9a allows an attacker to availability via local input manipulation via gengeitpspline function.
— Red Hat
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-46399?
CVE-2025-46399 is classified as a high severity vulnerability due to its impact on system availability.
How do I fix CVE-2025-46399?
To fix CVE-2025-46399, update fig2dev to the latest version where the vulnerability has been patched.
What exploitation method is used for CVE-2025-46399?
CVE-2025-46399 can be exploited through local input manipulation, specifically via the genge_itp_spline function.
Who is affected by CVE-2025-46399?
CVE-2025-46399 affects users of fig2dev version 3.2.9a.
What are the potential consequences of CVE-2025-46399?
The potential consequences of CVE-2025-46399 include a segmentation fault that may lead to an application crash and loss of availability.