[Git][security-tracker-team/security-tracker][master] Add CVE-2020-21681/fig2dev

Salvatore Bonaccorso (@carnil) carnil at debian.org
Thu Aug 12 07:32:45 BST 2021



Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker


Commits:
f1335bd8 by Salvatore Bonaccorso at 2021-08-12T08:32:19+02:00
Add CVE-2020-21681/fig2dev

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -70758,7 +70758,11 @@ CVE-2020-21683 (A global buffer overflow in the shade_or_tint_name_after_declare
 CVE-2020-21682 (A global buffer overflow in the set_fill component in genge.c of fig2d ...)
 	TODO: check
 CVE-2020-21681 (A global buffer overflow in the set_color component in genge.c of fig2 ...)
-	TODO: check
+	- fig2dev 1:3.2.8-1
+	- transfig <removed>
+	NOTE: https://sourceforge.net/p/mcj/tickets/73/
+	NOTE: https://sourceforge.net/p/mcj/fig2dev/ci/d70e4ba6308046f71cb51f67db8412155af52411/ (3.2.8)
+	NOTE: https://sourceforge.net/p/mcj/fig2dev/ci/4d4e1fdac467c386cba8706aa0067d5ab8da02d7/ (3.2.8)
 CVE-2020-21680 (A stack-based buffer overflow in the put_arrow() component in genpict2 ...)
 	- fig2dev 1:3.2.8-1
 	- transfig <removed>



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f1335bd87cf58659d4e4c91ac7ff7c0a9edf0f6c

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/f1335bd87cf58659d4e4c91ac7ff7c0a9edf0f6c
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20210812/a2c84a47/attachment.htm>


More information about the debian-security-tracker-commits mailing list