CVE-2014-9157
Publication date 3 December 2014
Last updated 24 July 2024
Ubuntu priority
Format string vulnerability in the yyerror function in lib/cgraph/scan.l in Graphviz allows remote attackers to have unspecified impact via format string specifiers in unknown vectors, which are not properly handled in an error string.
Status
Package | Ubuntu Release | Status |
---|---|---|
graphviz | ||
14.04 LTS trusty |
Fixed 2.36.0-0ubuntu3.1
|
|
References
Related Ubuntu Security Notices (USN)
- USN-2435-1
- Graphviz vulnerability
- 9 December 2014