Export CSV

Products

1 vendor
VendorProductsCVEsKEVAvg EPSSWorst Severity
115040.3%CRITICAL

Related CVEs

15
CVE IDDescriptionSeverityCVSSKEVEPSSPublished
CVE-2025-31177gnuplot is affected by a heap buffer overflow at function utf8_copy_one.MEDIUM5.55.7%May 7, 2025
CVE-2025-31181A flaw was found in gnuplot. The X11_graphics() function may lead to a segmentation fault and cause a system crash.MEDIUM6.28.2%Mar 27, 2025
CVE-2025-31180A flaw was found in gnuplot. The CANVAS_text() function may lead to a segmentation fault and cause a system crash.MEDIUM6.28.2%Mar 27, 2025
CVE-2025-31179A flaw was found in gnuplot. The xstrftime() function may lead to a segmentation fault, causing a system crash.MEDIUM6.28.2%Mar 27, 2025
CVE-2025-31178A flaw was found in gnuplot. The GetAnnotateString() function may lead to a segmentation fault and cause a system crash.MEDIUM6.28.2%Mar 27, 2025
CVE-2025-31176A flaw was found in gnuplot. The plot3d_points() function may lead to a segmentation fault and cause a system crash.MEDIUM6.28.2%Mar 27, 2025
CVE-2020-25969gnuplot v5.5 was discovered to contain a buffer overflow via the function plotrequest().CRITICAL9.854.5%Jul 5, 2023
CVE-2021-44917A Divide by Zero vulnerability exists in gnuplot 5.4 in the boundary3d function in graph3d.c, which could cause a Arithmetic exception and application crash.MEDIUM5.5Dec 21, 2021
CVE-2020-25412com_line() in command.c in gnuplot 5.4 leads to an out-of-bounds-write from strncpy() that may lead to arbitrary code execution.CRITICAL9.882.9%Sep 16, 2020
CVE-2020-25559gnuplot 5.5 is affected by double free when executing print_set_output. This may result in context-dependent arbitrary code execution.HIGH7.872.2%Sep 16, 2020
CVE-2018-19492An issue was discovered in cairo.trm in Gnuplot 5.2.5. This issue allows an attacker to conduct a buffer overflow with an arbitrary amount of data in the cairotrm_options function. This flaw is caused by a missing size check of an argument passed to the "set font" function. This issue occurs when the Gnuplot pngcairo terminal is used as a backend.NONE72.0%Nov 23, 2018
CVE-2018-19491An issue was discovered in post.trm in Gnuplot 5.2.5. This issue allows an attacker to conduct a buffer overflow with an arbitrary amount of data in the PS_options function. This flaw is caused by a missing size check of an argument passed to the "set font" function. This issue occurs when the Gnuplot postscript terminal is used as a backend.NONE72.0%Nov 23, 2018
CVE-2018-19490An issue was discovered in datafile.c in Gnuplot 5.2.5. This issue allows an attacker to conduct a heap-based buffer overflow with an arbitrary amount of data in df_generate_ascii_array_entry. To exploit this vulnerability, an attacker must pass an overlong string as the right bound of the range argument that is passed to the plot function.NONE72.0%Nov 23, 2018
CVE-2017-9670An uninitialized stack variable vulnerability in load_tic_series() in set.c in gnuplot 5.2.rc1 allows an attacker to cause Denial of Service (Segmentation fault and Memory Corruption) or possibly have unspecified other impact when a victim opens a specially crafted file.NONE54.3%Jun 15, 2017
CVE-2002-2259Buffer overflow in the French documentation patch for Gnuplot 3.7 in SuSE Linux before 8.0 allows local users to execute arbitrary code as root via unknown attack vectors.NONE37.2%Dec 31, 2002