make_arrow in arrow.c in Xfig fig2dev 3.2.7b allows a segmentation fault and out-of-bounds write because of an integer overflow via a large arrow type.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2019-12-12T02:22:33
Updated: 2020-01-25T08:06:03
Reserved: 2019-12-12T00:00:00
Link: CVE-2019-19746
JSON object: View
NVD Information
Status : Modified
Published: 2019-12-12T03:15:11.117
Modified: 2023-11-07T03:07:46.483
Link: CVE-2019-19746
JSON object: View
Redhat Information
No data.