CVE-2019-18604

Published: 29 October 2019

In axohelp.c before 1.3 in axohelp in axodraw2 before 2.1.1b, as distributed in TeXLive and other collections, sprintf is mishandled.

Priority

Low

CVSS 3 base score: 9.8

Status

Package Release Status
texlive-bin
Launchpad, Ubuntu, Debian
Upstream
Released (2020.20200327.54578-2)
Ubuntu 21.04 (Hirsute Hippo) Not vulnerable
(2020.20200327.54578-5)
Ubuntu 20.10 (Groovy Gorilla) Not vulnerable
(2020.20200327.54578-4build1)
Ubuntu 20.04 LTS (Focal Fossa) Needed

Ubuntu 18.04 LTS (Bionic Beaver) Not vulnerable
(code not present)
Ubuntu 16.04 ESM (Xenial Xerus) Not vulnerable
(code not present)
Ubuntu 14.04 ESM (Trusty Tahr) Does not exist