vulnerability

Oracle Solaris 11: CVE-2018-19492 (11.4 SRU 39.107.1)

Severity
7
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
2018-11-23
Added
2021-11-17
Modified
2022-02-17

Description

An issue was discovered in cairo.trm in Gnuplot 5.2.5. This issue allows an attacker to conduct a buffer overflow with an arbitrary amount of data in the cairotrm_options function. This flaw is caused by a missing size check of an argument passed to the "set font" function. This issue occurs when the Gnuplot pngcairo terminal is used as a backend.

Solution

oracle-solaris-11-4-upgrade-image-gnuplot-5-4-2-11-4-39-0-1-107-0
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.