Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2769▲ 8 respecto a la semana anterior
Críticas / altas1461▲ 292 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)93▼ 416 respecto a la semana anterior
30 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.5) | 0.25% | — | Fig2dev Project Fig2devRedhat Enterprise Linux | 23/4/2025 | 30/6/2026 | In xfig diagramming tool, a segmentation fault while running fig2dev allows an attacker to availability via local input manipulation via read_arcobject function. | |
| Modificada | Media (5.5) | 0.25% | — | Fig2dev Project Fig2devRedhat Enterprise Linux | 23/4/2025 | 30/6/2026 | A flaw was found in fig2dev. This vulnerability allows availability via local input manipulation via genge_itp_spline function. | |
| Modificada | Media (5.5) | 0.27% | — | Fig2dev Project Fig2devRedhat Enterprise Linux | 23/4/2025 | 30/6/2026 | In xfig diagramming tool, a stack-overflow while running fig2dev allows memory corruption via local input manipulation via read_objects function. | |
| Modificada | Alta (7.8) | 0.30% | — | Fig2dev Project Fig2devRedhat Enterprise Linux | 23/4/2025 | 30/6/2026 | A flaw was found in xfig. This vulnerability allows possible code execution via local input manipulation via bezier_spline function. | |
| Modificada | Media (6.6) | 0.21% | — | Fig2dev Project Fig2dev | 28/3/2025 | 17/6/2026 | heap-buffer overflow in fig2dev in version 3.2.9a allows an attacker to availability via local input manipulation via create_line_with_spline. | |
| Modificada | Media (6.6) | 0.19% | — | Fig2dev Project Fig2dev | 28/3/2025 | 17/6/2026 | Segmentation fault in fig2dev in version 3.2.9a allows an attacker to availability via local input manipulation via put_patternarc function. | |
| Modificada | Media (6.6) | 0.19% | — | Fig2dev Project Fig2dev | 28/3/2025 | 17/6/2026 | Floating point exception in fig2dev in version 3.2.9a allows an attacker to availability via local input manipulation via get_slope function. | |
| Modificada | Media (5.5) | 0.75% | — | Fig2dev Project Fig2devDebian Linux | 12/1/2022 | 17/6/2026 | A denial of service vulnerabiity exists in fig2dev through 3.28a due to a segfault in the open_stream function in readpics.c. | |
| Modificada | Media (5.5) | 0.75% | — | Fig2dev Project Fig2devDebian Linux | 12/1/2022 | 17/6/2026 | A double-free vulnerability exists in fig2dev through 3.28a is affected by: via the free_stream function in readpics.c, which could cause a denial of service (context-dependent). | |
| Modificada | Media (5.5) | 0.98% | — | Xfig Project Fig2devDebian Linux | 20/9/2021 | 17/6/2026 | An issue was discovered in fig2dev before 3.2.8.. A NULL pointer dereference exists in the function compute_closed_spline() located in trans_spline.c. It allows an attacker to cause Denial of Service. The fixed version of fig2dev is 3.2.8. | |
| Modificada | Media (5.5) | 0.89% | — | Xfig Project Fig2devDebian Linux | 16/9/2021 | 17/6/2026 | fig2dev 3.2.7b contains a segmentation fault in the gencgm_start function in gencgm.c. | |
| Modificada | Media (5.5) | 0.87% | — | Xfig Project Fig2devDebian Linux | 16/9/2021 | 17/6/2026 | fig2dev 3.2.7b contains a global buffer overflow in the get_line function in read.c. | |
| Modificada | Media (5.5) | 0.87% | — | Xfig Project Fig2devDebian Linux | 16/9/2021 | 17/6/2026 | fig2dev 3.2.7b contains a stack buffer overflow in the read_textobject function in read.c. | |
| Modificada | Media (5.5) | 1.1% | — | Xfig Project Fig2devDebian Linux | 16/9/2021 | 17/6/2026 | fig2dev 3.2.7b contains a global buffer overflow in the setfigfont function in genepic.c. | |
| Modificada | Media (5.5) | 1.1% | — | Xfig Project Fig2devDebian Linux | 16/9/2021 | 17/6/2026 | fig2dev 3.2.7b contains a global buffer overflow in the conv_pattern_index function in gencgm.c. | |
| Modificada | Media (5.5) | 0.72% | — | Xfig Project Fig2devDebian Linux | 16/9/2021 | 17/6/2026 | fig2dev 3.2.7b contains a segmentation fault in the read_objects function in read.c. | |
| Modificada | Media (5.5) | 1.1% | — | Xfig Project Fig2devDebian Linux | 16/9/2021 | 17/6/2026 | fig2dev 3.2.7b contains a stack buffer overflow in the bezier_spline function in genepic.c. | |
| Modificada | Media (5.5) | 0.70% | — | Fig2dev Project Fig2dev | 10/8/2021 | 17/6/2026 | A global buffer overflow in the put_font in genpict2e.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pict2e format. | |
| Modificada | Media (5.5) | 0.78% | — | Fig2dev Project Fig2dev | 10/8/2021 | 17/6/2026 | A global buffer overflow in the shade_or_tint_name_after_declare_color in genpstricks.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pstricks format. | |
| Modificada | Media (5.5) | 0.85% | — | Fig2dev Project Fig2dev | 10/8/2021 | 17/6/2026 | A global buffer overflow in the set_fill component in genge.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into ge format. | |
| Modificada | Media (5.5) | 0.72% | — | Fig2dev Project Fig2dev | 10/8/2021 | 17/6/2026 | A global buffer overflow in the set_color component in genge.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into ge format. | |
| Modificada | Media (5.5) | 0.78% | — | Fig2dev Project Fig2dev | 10/8/2021 | 17/6/2026 | A stack-based buffer overflow in the put_arrow() component in genpict2e.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pict2e format. | |
| Modificada | Media (5.5) | 0.66% | — | Fig2dev Project Fig2dev | 10/8/2021 | 17/6/2026 | A global buffer overflow in the genmp_writefontmacro_latex component in genmp.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into mp format. | |
| Modificada | Media (5.5) | 1.1% | — | Fig2dev Project Fig2devDebian Linux | 10/8/2021 | 17/6/2026 | A stack-based buffer overflow in the genpstrx_text() component in genpstricks.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pstricks format. | |
| Modificada | Media (5.5) | 1.1% | — | Fig2dev Project Fig2devDebian Linux | 10/8/2021 | 17/6/2026 | A stack-based buffer overflow in the genptk_text component in genptk.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into ptk format. |