[Git][security-tracker-team/security-tracker][master] Add CVE-2020-21678/fig2dev

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Aug 12 07:26:30 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d4d0b95a by Salvatore Bonaccorso at 2021-08-12T08:26:06+02:00
Add CVE-2020-21678/fig2dev

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -70764,6 +70764,10 @@ CVE-2020-21680 (A stack-based buffer overflow in the put_arrow() component in ge
 CVE-2020-21679
 	RESERVED
 CVE-2020-21678 (A global buffer overflow in the genmp_writefontmacro_latex component i ...)
+	- fig2dev 1:3.2.8-1
+	- transfig <removed>
+	NOTE: https://sourceforge.net/p/mcj/tickets/71/
+	NOTE: https://sourceforge.net/p/mcj/fig2dev/ci/d70e4ba6308046f71cb51f67db8412155af52411/ (3.2.8)
 	TODO: check
 CVE-2020-21677 (A heap-based buffer overflow in the sixel_encoder_output_without_macro ...)
 	- libsixel 1.8.6-1



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d4d0b95ae267492c25668a7eb488ff2e2f235b23

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d4d0b95ae267492c25668a7eb488ff2e2f235b23
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210812/109f9d71/attachment.htm>


More information about the debian-security-tracker-commits mailing list