All errata/p9/ALT-PU-2020-3007-2
ALT-PU-2020-3007-2

Package update graphviz in branch p9

Version2.41.2-alt4
Published2026-03-07
Max severityMEDIUM
Severity:

Closed issues (1)

CVE-2019-9904
MEDIUM6.5

An issue was discovered in lib\cdt\dttree.c in libcdt.a in graphviz 2.40.1. Stack consumption occurs because of recursive agclose calls in lib\cgraph\graph.c in libcgraph.a, related to agfstsubg in lib\cgraph\subg.c.

Published: 2019-03-21Modified: 2024-11-21
CVSS 2.0MEDIUM 4.3
CVSS:2.0/AV:N/AC:M/Au:N/C:N/I:N/A:P
CVSS 3.xMEDIUM 6.5
CVSS:3.x/CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H