In axohelp.c before 1.3 in axohelp in axodraw2 before 2.1.1b, as distributed in TeXLive and other collections, sprintf is mishandled.
References
| Link | Resource |
|---|---|
| https://github.com/TeX-Live/texlive-source/commit/9216833a3888a4105a18e8c349f65b045ddb1079#diff-987e40c0e27ee43f6a2414ada73a191a | Patch Third Party Advisory |
Information
Published : 2019-10-29 19:15
Updated : 2021-07-21 11:39
NVD link : CVE-2019-18604
Mitre link : CVE-2019-18604
JSON object : View
Products Affected
axohelp.c_project
- axohelp.c
axodraw2_project
- axodraw2
CWE
CWE-20
Improper Input Validation
