UbuntuUpdates.org

Package "gnuplot"

Name: gnuplot

Description:

Command-line driven interactive plotting program

Latest version: 4.6.6-3ubuntu0.1
Release: xenial (16.04)
Level: security
Repository: universe
Homepage: http://gnuplot.sourceforge.net/

Links


Download "gnuplot"


Other versions of "gnuplot" in Xenial

Repository Area Version
base universe 4.6.6-3
updates universe 4.6.6-3ubuntu0.1

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 4.6.6-3ubuntu0.1 2020-09-23 15:06:40 UTC

  gnuplot (4.6.6-3ubuntu0.1) xenial-security; urgency=medium

  * SECURITY UPDATE: Heap-based buffer overflows
    - debian/patches/CVE-2018-19490-19491-19492.patch: various overflow cases
      found by fuzzing.
    - CVE-2018-19490
    - CVE-2018-19491
    - CVE-2018-19492

 -- Paulo Flabiano Smorigo <email address hidden> Tue, 22 Sep 2020 17:21:59 +0000

CVE-2018-19490 An issue was discovered in datafile.c in Gnuplot 5.2.5. This issue allows an attacker to conduct a heap-based buffer overflow with an arbitrary amoun
CVE-2018-19491 An issue was discovered in post.trm in Gnuplot 5.2.5. This issue allows an attacker to conduct a buffer overflow with an arbitrary amount of data in
CVE-2018-19492 An issue was discovered in cairo.trm in Gnuplot 5.2.5. This issue allows an attacker to conduct a buffer overflow with an arbitrary amount of data in



About   -   Send Feedback to @ubuntu_updates