It was discovered that transfig incorrectly handled certain FIG files. An attacker could possibly use this to execute arbitrary code (CVE-2018-16140).
{ "section": "core" }
"https://advisories.mageia.org/MGASA-2019-0064.json"