An issue was discovered in datafile.c in Gnuplot 5.2.5. This issue allows an attacker to conduct a heap-based buffer overflow with an arbitrary amount of data in dfgenerateasciiarrayentry. To exploit this vulnerability, an attacker must pass an overlong string as the right bound of the range argument that is passed to the plot function.
{ "availability": "No subscription required", "ubuntu_priority": "low", "binaries": [ { "binary_name": "gnuplot", "binary_version": "4.6.6-3ubuntu0.1" }, { "binary_name": "gnuplot-data", "binary_version": "4.6.6-3ubuntu0.1" }, { "binary_name": "gnuplot-doc", "binary_version": "4.6.6-3ubuntu0.1" }, { "binary_name": "gnuplot-nox", "binary_version": "4.6.6-3ubuntu0.1" }, { "binary_name": "gnuplot-nox-dbgsym", "binary_version": "4.6.6-3ubuntu0.1" }, { "binary_name": "gnuplot-qt", "binary_version": "4.6.6-3ubuntu0.1" }, { "binary_name": "gnuplot-qt-dbgsym", "binary_version": "4.6.6-3ubuntu0.1" }, { "binary_name": "gnuplot-tex", "binary_version": "4.6.6-3ubuntu0.1" }, { "binary_name": "gnuplot-x11", "binary_version": "4.6.6-3ubuntu0.1" }, { "binary_name": "gnuplot-x11-dbgsym", "binary_version": "4.6.6-3ubuntu0.1" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "low", "binaries": [ { "binary_name": "gnuplot", "binary_version": "5.4.2+dfsg2-2" }, { "binary_name": "gnuplot-data", "binary_version": "5.4.2+dfsg2-2" }, { "binary_name": "gnuplot-doc", "binary_version": "5.4.2+dfsg2-2" }, { "binary_name": "gnuplot-nox", "binary_version": "5.4.2+dfsg2-2" }, { "binary_name": "gnuplot-nox-dbgsym", "binary_version": "5.4.2+dfsg2-2" }, { "binary_name": "gnuplot-qt", "binary_version": "5.4.2+dfsg2-2" }, { "binary_name": "gnuplot-qt-dbgsym", "binary_version": "5.4.2+dfsg2-2" }, { "binary_name": "gnuplot-x11", "binary_version": "5.4.2+dfsg2-2" }, { "binary_name": "gnuplot-x11-dbgsym", "binary_version": "5.4.2+dfsg2-2" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "low", "binaries": [ { "binary_name": "gnuplot", "binary_version": "6.0.0+dfsg1-1ubuntu3" }, { "binary_name": "gnuplot-data", "binary_version": "6.0.0+dfsg1-1ubuntu3" }, { "binary_name": "gnuplot-doc", "binary_version": "6.0.0+dfsg1-1ubuntu3" }, { "binary_name": "gnuplot-nox", "binary_version": "6.0.0+dfsg1-1ubuntu3" }, { "binary_name": "gnuplot-nox-dbgsym", "binary_version": "6.0.0+dfsg1-1ubuntu3" }, { "binary_name": "gnuplot-qt", "binary_version": "6.0.0+dfsg1-1ubuntu3" }, { "binary_name": "gnuplot-qt-dbgsym", "binary_version": "6.0.0+dfsg1-1ubuntu3" }, { "binary_name": "gnuplot-x11", "binary_version": "6.0.0+dfsg1-1ubuntu3" }, { "binary_name": "gnuplot-x11-dbgsym", "binary_version": "6.0.0+dfsg1-1ubuntu3" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "low", "binaries": [ { "binary_name": "gnuplot", "binary_version": "6.0.0+dfsg1-1ubuntu3" }, { "binary_name": "gnuplot-data", "binary_version": "6.0.0+dfsg1-1ubuntu3" }, { "binary_name": "gnuplot-doc", "binary_version": "6.0.0+dfsg1-1ubuntu3" }, { "binary_name": "gnuplot-nox", "binary_version": "6.0.0+dfsg1-1ubuntu3" }, { "binary_name": "gnuplot-nox-dbgsym", "binary_version": "6.0.0+dfsg1-1ubuntu3" }, { "binary_name": "gnuplot-qt", "binary_version": "6.0.0+dfsg1-1ubuntu3" }, { "binary_name": "gnuplot-qt-dbgsym", "binary_version": "6.0.0+dfsg1-1ubuntu3" }, { "binary_name": "gnuplot-x11", "binary_version": "6.0.0+dfsg1-1ubuntu3" }, { "binary_name": "gnuplot-x11-dbgsym", "binary_version": "6.0.0+dfsg1-1ubuntu3" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "low", "binaries": [ { "binary_name": "gnuplot", "binary_version": "6.0.2+dfsg1-1" }, { "binary_name": "gnuplot-data", "binary_version": "6.0.2+dfsg1-1" }, { "binary_name": "gnuplot-doc", "binary_version": "6.0.2+dfsg1-1" }, { "binary_name": "gnuplot-nox", "binary_version": "6.0.2+dfsg1-1" }, { "binary_name": "gnuplot-nox-dbgsym", "binary_version": "6.0.2+dfsg1-1" }, { "binary_name": "gnuplot-qt", "binary_version": "6.0.2+dfsg1-1" }, { "binary_name": "gnuplot-qt-dbgsym", "binary_version": "6.0.2+dfsg1-1" }, { "binary_name": "gnuplot-x11", "binary_version": "6.0.2+dfsg1-1" }, { "binary_name": "gnuplot-x11-dbgsym", "binary_version": "6.0.2+dfsg1-1" } ] }