USN-3760-1: transfig vulnerability
Published Sep 6, 2018
·Updated
It was discovered that transfig incorrectly handled certain FIG files. An attacker could possibly use this to execute arbitrary code.
Affected Software
0 affected components
Event History
Feb 20, 2026
Advisory Published
via Ubuntu·05:31 PM
Data Sourced
via Ubuntu·05:31 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this transfig vulnerability?
The vulnerability ID for this transfig vulnerability is CVE-2018-16140.
2
What is the severity of CVE-2018-16140?
The severity of CVE-2018-16140 is not specified.
3
How does the transfig vulnerability affect Ubuntu 16.04?
The transfig vulnerability affects Ubuntu 16.04 if transfig package version 1:3.2.5.e-5ubuntu0.1 is installed.
4
How does the transfig vulnerability affect Ubuntu 14.04?
The transfig vulnerability affects Ubuntu 14.04 if transfig package version 1:3.2.5.e-1ubuntu1.1 is installed.
5
How can I fix the transfig vulnerability?
To fix the transfig vulnerability, update the transfig package to version 1:3.2.5.e-5ubuntu0.1 for Ubuntu 16.04 and version 1:3.2.5.e-1ubuntu1.1 for Ubuntu 14.04.