CVE-2014-0978
Publication date 10 January 2014
Last updated 24 July 2024
Ubuntu priority
Description
Stack-based buffer overflow in the yyerror function in lib/cgraph/scan.l in Graphviz 2.34.0 allows remote attackers to have unspecified impact via a long line in a dot file.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| graphviz | 13.10 saucy |
Fixed 2.26.3-15ubuntu4.1
|
| 13.04 raring |
Fixed 2.26.3-14ubuntu1.1
|
|
| 12.10 quantal |
Fixed 2.26.3-12ubuntu1.1
|
|
| 12.04 LTS precise |
Fixed 2.26.3-10ubuntu1.1
|
|
| 10.04 LTS lucid |
Fixed 2.20.2-8ubuntu3.1
|
Notes
References
Related Ubuntu Security Notices (USN)
- USN-2083-1
- Graphviz vulnerabilities
- 16 January 2014