Suhwan Song discovered that Fig2dev did not correctly handle certain memory operations. If a user or automated system were tricked into opening a specially crafted file, an attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 18.04 LTS and Ubuntu 20.04 LTS. (CVE-2020-21680, CVE-2020-21682, CVE-2020-21683)
It was discovered that Fig2dev did not limit the size of certain inputs. If a user or automated system were tricked into opening a specially crafted file, an attacker could possibly use this issue to cause a denial of service. (CVE-2025-31162, CVE-2025-31163)
It was discovered that Fig2dev did not correctly handle certain inputs. If a user or automated system were tricked into opening a specially crafted file, an attacker could possibly use this issue to cause a denial of service. This issue only affected Ubuntu 24.04 LTS and Ubuntu 24.10. (CVE-2025-31164)
{ "binaries": [ { "binary_version": "1:3.2.6a-6ubuntu1.1+esm1", "binary_name": "fig2dev" }, { "binary_version": "1:3.2.6a-6ubuntu1.1+esm1", "binary_name": "fig2dev-dbgsym" }, { "binary_version": "1:3.2.6a-6ubuntu1.1+esm1", "binary_name": "transfig" } ], "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro" }