CVE-2020-21684: FIG2DEV Project FIG2DEV

Medium severity, CVSS 5.5. EPSS: 0.7% chance of exploitation in the next 30 days.

A global buffer overflow in the put_font in genpict2e.c of fig2dev 3.2.7b allows attackers to cause a denial of service (DOS) via converting a xfig file into pict2e format.

Affected products

Published 2021-08-10. Last modified 2026-06-17.