A double-free vulnerability exists in fig2dev through 3.28a is affected by: via the free_stream function in readpics.c, which could cause a denial of service (context-dependent).
The product calls free() twice on the same memory address.
| Name | Vendor | Start Version | End Version | 
|---|---|---|---|
| Fig2dev | Fig2dev_project | * | 3.2.8a (including) | 
| Fig2dev | Ubuntu | bionic | * | 
| Fig2dev | Ubuntu | focal | * | 
| Fig2dev | Ubuntu | hirsute | * | 
| Fig2dev | Ubuntu | impish | * | 
| Fig2dev | Ubuntu | kinetic | * | 
| Fig2dev | Ubuntu | lunar | * | 
| Fig2dev | Ubuntu | mantic | * | 
| Fig2dev | Ubuntu | trusty | * | 
| Fig2dev | Ubuntu | upstream | * | 
| Fig2dev | Ubuntu | xenial | * |