DescriptionAn issue was discovered in cairo.trm in Gnuplot 5.2.5. This issue allows an attacker to conduct a buffer overflow with an arbitrary amount of data in the cairotrm_options function. This flaw is caused by a missing size check of an argument passed to the "set font" function. This issue occurs when the Gnuplot pngcairo terminal is used as a backend.
NVD severitymedium (attack range: remote)

gnuplot (PTS)jessie4.6.6-2vulnerable
jessie (security)4.6.6-2+deb8u1fixed
buster, sid5.2.6+dfsg1-1vulnerable
gnuplot5 (PTS)jessie5.0.0~rc+dfsg2-1vulnerable
jessie (security)5.0.0~rc+dfsg2-1+deb8u1fixed

No security impact, neutralised by toolchain hardening
No security impact, gnuplot can execute arbitrary commands and need to come from a trusted source,
see (added in 5.2.6)

