REDHAT-BUG-2355342: Medium severity gnuplot vulnerability
Published Mar 27, 2025
·Updated
gnuplot 6.1 is affected by heap-buffer-overflow when executing function utf8copyone. This may result in local code execution.
Affected Software
1 affected component
gnuplot gnuplot
Event History
Mar 27, 2025
Data Sourced
via Red Hat·02:19 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of REDHAT-BUG-2355342?
The severity of REDHAT-BUG-2355342 is considered high due to the potential for local code execution through a heap-buffer-overflow vulnerability.
2
How do I fix REDHAT-BUG-2355342?
To fix REDHAT-BUG-2355342, you should update gnuplot to the latest available version that includes the patch addressing the heap-buffer-overflow issue.
3
Which versions of gnuplot are affected by REDHAT-BUG-2355342?
GNUplot version 6.1 is affected by the vulnerability identified as REDHAT-BUG-2355342.
4
What type of vulnerability is REDHAT-BUG-2355342?
REDHAT-BUG-2355342 is a heap-buffer-overflow vulnerability that can lead to local code execution.
5
Can REDHAT-BUG-2355342 be exploited remotely?
No, REDHAT-BUG-2355342 requires local access to the system to exploit the heap-buffer-overflow vulnerability.