CVE-2020-21531: Debian Linux

Medium severity, CVSS 5.5. EPSS: 1.1% chance of exploitation in the next 30 days.

fig2dev 3.2.7b contains a global buffer overflow in the conv_pattern_index function in gencgm.c.

Affected products

  • Debian Debian Linux: version 9.0 only; version 10.0 only
  • Xfig Project FIG2DEV: version 3.2.7 only

Published 2021-09-16. Last modified 2026-06-17.