CVE-2014-1236
Publication date 10 January 2014
Last updated 24 July 2024
Ubuntu priority
Stack-based buffer overflow in the chkNum function in lib/cgraph/scan.l in Graphviz 2.34.0 allows remote attackers to have unspecified impact via vectors related to a “badly formed number” and a “long digit list.”
Status
Package | Ubuntu Release | Status |
---|---|---|
graphviz | 13.10 saucy |
Fixed 2.26.3-15ubuntu4.1
|
13.04 raring |
Fixed 2.26.3-14ubuntu1.1
|
|
12.10 quantal |
Fixed 2.26.3-12ubuntu1.1
|
|
12.04 LTS precise |
Fixed 2.26.3-10ubuntu1.1
|
|
10.04 LTS lucid |
Fixed 2.20.2-8ubuntu3.1
|
References
Related Ubuntu Security Notices (USN)
- USN-2083-1
- Graphviz vulnerabilities
- 16 January 2014