Search CVE reports


Toggle filters

11 – 15 of 15 results


CVE-2020-25412

Low priority
Vulnerable

com_line() in command.c in gnuplot 5.4 leads to an out-of-bounds-write from strncpy() that may lead to arbitrary code execution.

1 affected package

gnuplot

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnuplot Not affected Not affected Vulnerable Not affected
Show less packages

CVE-2018-19492

Low priority

Some fixes available 1 of 13

An issue was discovered in cairo.trm in Gnuplot 5.2.5. This issue allows an attacker to conduct a buffer overflow with an arbitrary amount of data in the cairotrm_options function. This flaw is caused by a missing size check of an...

2 affected packages

gnuplot, gnuplot5

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnuplot Not affected Not affected Not affected Vulnerable
gnuplot5 Not in release Not in release Not in release Not in release
Show less packages

CVE-2018-19491

Low priority

Some fixes available 1 of 13

An issue was discovered in post.trm in Gnuplot 5.2.5. This issue allows an attacker to conduct a buffer overflow with an arbitrary amount of data in the PS_options function. This flaw is caused by a missing size check of...

2 affected packages

gnuplot, gnuplot5

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnuplot Not affected Not affected Not affected Vulnerable
gnuplot5 Not in release Not in release Not in release Not in release
Show less packages

CVE-2018-19490

Low priority

Some fixes available 1 of 13

An issue was discovered in datafile.c in Gnuplot 5.2.5. This issue allows an attacker to conduct a heap-based buffer overflow with an arbitrary amount of data in df_generate_ascii_array_entry. To exploit this vulnerability, an...

2 affected packages

gnuplot, gnuplot5

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnuplot Not affected Not affected Not affected Vulnerable
gnuplot5 Not in release Not in release Not in release Not in release
Show less packages

CVE-2017-9670

Low priority
Ignored

An uninitialized stack variable vulnerability in load_tic_series() in set.c in gnuplot 5.2.rc1 allows an attacker to cause Denial of Service (Segmentation fault and Memory Corruption) or possibly have unspecified other impact when...

1 affected package

gnuplot

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
gnuplot Not affected
Show less packages