Segmentation fault in fig2dev in version 3.2.9a allows an attacker to availability via local input manipulation via put_patternarc function.
{ "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro", "binaries": [ { "binary_version": "1:3.2.6a-6ubuntu1.1+esm1", "binary_name": "fig2dev" }, { "binary_version": "1:3.2.6a-6ubuntu1.1+esm1", "binary_name": "transfig" } ] }
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2025/UBUNTU-CVE-2025-31163.json"
{ "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro", "binaries": [ { "binary_version": "1:3.2.7a-7ubuntu0.1+esm1", "binary_name": "fig2dev" } ] }
{ "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro", "binaries": [ { "binary_version": "1:3.2.8b-1ubuntu0.1~esm1", "binary_name": "fig2dev" } ] }
{ "availability": "Available with Ubuntu Pro: https://ubuntu.com/pro", "binaries": [ { "binary_version": "1:3.2.9-3ubuntu0.1~esm1", "binary_name": "fig2dev" } ] }