CVE-2014-0978: Graphviz

High severity, CVSS 9.3. EPSS: 4.9% chance of exploitation in the next 30 days.

Stack-based buffer overflow in the yyerror function in lib/cgraph/scan.l in Graphviz 2.34.0 allows remote attackers to have unspecified impact via a long line in a dot file.

Affected products

Published 2014-01-10. Last modified 2026-06-17.