vulnerability

Oracle Solaris 11: CVE-2018-19490 (11.4 SRU 39.107.1)

Severity
7
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
Nov 23, 2018
Added
Nov 17, 2021
Modified
Feb 17, 2022

Description

An issue was discovered in datafile.c in Gnuplot 5.2.5. This issue allows an attacker to conduct a heap-based buffer overflow with an arbitrary amount of data in df_generate_ascii_array_entry. To exploit this vulnerability, an attacker must pass an overlong string as the right bound of the range argument that is passed to the plot function.

Solution

oracle-solaris-11-4-upgrade-image-gnuplot-5-4-2-11-4-39-0-1-107-0
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.