gnuplot 5.5 is affected by double free when executing print_set_output. This may result in context-dependent arbitrary code execution.
The product calls free() twice on the same memory address, potentially leading to modification of unexpected memory locations.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gnuplot | Gnuplot_project | 5.5.0 (including) | 5.5.0 (including) |
Gnuplot | Ubuntu | bionic | * |
Gnuplot | Ubuntu | groovy | * |
Gnuplot | Ubuntu | hirsute | * |
Gnuplot | Ubuntu | impish | * |
Gnuplot | Ubuntu | kinetic | * |
Gnuplot | Ubuntu | lunar | * |
Gnuplot | Ubuntu | mantic | * |
Gnuplot | Ubuntu | trusty | * |
Gnuplot | Ubuntu | xenial | * |