vulnerability

Ubuntu: (Multiple Advisories) (CVE-2018-19490): Gnuplot vulnerabilities

Severity
7
CVSS
(AV:N/AC:M/Au:N/C:P/I:P/A:P)
Published
Nov 23, 2018
Added
Sep 26, 2020
Modified
Aug 18, 2025

Description

An issue was discovered in datafile.c in Gnuplot 5.2.5. This issue allows an attacker to conduct a heap-based buffer overflow with an arbitrary amount of data in df_generate_ascii_array_entry. To exploit this vulnerability, an attacker must pass an overlong string as the right bound of the range argument that is passed to the plot function.

Solutions

ubuntu-pro-upgrade-gnuplotubuntu-pro-upgrade-gnuplot-dataubuntu-pro-upgrade-gnuplot-noxubuntu-pro-upgrade-gnuplot-qtubuntu-pro-upgrade-gnuplot-texubuntu-pro-upgrade-gnuplot-x11
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.