A double-free vulnerability exists in fig2dev through 3.28a is affected by: via the free_stream function in readpics.c, which could cause a denial of service (context-dependent).
The product calls free() twice on the same memory address, potentially leading to modification of unexpected memory locations.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Fig2dev | Fig2dev_project | * | 3.2.8a (including) |
Fig2dev | Ubuntu | bionic | * |
Fig2dev | Ubuntu | hirsute | * |
Fig2dev | Ubuntu | impish | * |
Fig2dev | Ubuntu | kinetic | * |
Fig2dev | Ubuntu | lunar | * |
Fig2dev | Ubuntu | mantic | * |
Fig2dev | Ubuntu | trusty | * |
Fig2dev | Ubuntu | xenial | * |