Security Advisory

CVE-2018-19491

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-11-23 17:00:00
Last updated 2024-08-05 11:37:11
Assigner mitre
State PUBLISHED

Description

An issue was discovered in post.trm in Gnuplot 5.2.5. This issue allows an attacker to conduct a buffer overflow with an arbitrary amount of data in the PS_options function. This flaw is caused by a missing size check of an argument passed to the "set font" function. This issue occurs when the Gnuplot postscript terminal is used as a backend.