An issue was discovered in fig2dev before 3.2.8.. A NULL pointer dereference exists in the function compute_closed_spline() located in trans_spline.c. It allows an attacker to cause Denial of Service. The fixed version of fig2dev is 3.2.8.
A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Fig2dev | Xfig_project | * | 3.2.8 (excluding) |
Fig2dev | Ubuntu | bionic | * |
Fig2dev | Ubuntu | esm-apps/bionic | * |
Fig2dev | Ubuntu | esm-apps/focal | * |
Fig2dev | Ubuntu | focal | * |
Fig2dev | Ubuntu | trusty | * |
Fig2dev | Ubuntu | upstream | * |
Fig2dev | Ubuntu | xenial | * |
Transfig | Ubuntu | esm-infra/xenial | * |
Transfig | Ubuntu | trusty | * |
Transfig | Ubuntu | xenial | * |
Xfig | Ubuntu | esm-apps/xenial | * |
Xfig | Ubuntu | trusty | * |
Xfig | Ubuntu | xenial | * |