CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2008-4555

HIGH
8.5
CVSS Severity Score
EPSS Score0.0960%
EPSS Percentile14.68th
Published2008年10月14日
Last Modified2026年4月23日

Vulnerability Description

Stack-based buffer overflow in the push_subg function in parser.y (lib/graph/parser.c) in Graphviz 2.20.2, and possibly earlier versions, allows user-assisted remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a DOT file with a large number of Agraph_t elements.

Affected Platforms (CPE)

📦
Graphviz

Graphviz

<= 2.20.2
📦
Graphviz

Graphviz

= 1.5.1
📦
Graphviz

Graphviz

= 1.5.2
📦
Graphviz

Graphviz

= 1.5.3
📦
Graphviz

Graphviz

= 1.7.5.1
📦
Graphviz

Graphviz

= 1.7.5.2
📦
Graphviz

Graphviz

= 1.7.5.3
📦
Graphviz

Graphviz

= 1.7.5.4
📦
Graphviz

Graphviz

= 1.7.5.5
📦
Graphviz

Graphviz

= 1.7.5.6
📦
Graphviz

Graphviz

= 1.7.5.7
📦
Graphviz

Graphviz

= 1.7.5_0.1
📦
Graphviz

Graphviz

= 1.7.5_0.2
📦
Graphviz

Graphviz

= 1.7.5_0.3
📦
Graphviz

Graphviz

= 1.7.16.1
📦
Graphviz

Graphviz

= 1.7.16.2
📦
Graphviz

Graphviz

= 1.8.5.1
📦
Graphviz

Graphviz

= 1.8.5.2
📦
Graphviz

Graphviz

= 1.8.9.1
📦
Graphviz

Graphviz

= 1.10_2003-09-15_0415_1
📦
Graphviz

Graphviz

= 1.10_2003-09-15_0415_2
📦
Graphviz

Graphviz

= 1.12.1
📦
Graphviz

Graphviz

= 1.12.2
📦
Graphviz

Graphviz

= 1.12.3
📦
Graphviz

Graphviz

= 1.14.1
📦
Graphviz

Graphviz

= 1.16.1
📦
Graphviz

Graphviz

= 2.2
📦
Graphviz

Graphviz

= 2.2.1
📦
Graphviz

Graphviz

= 2.2.1.1
📦
Graphviz

Graphviz

= 2.2.2
📦
Graphviz

Graphviz

= 2.4
📦
Graphviz

Graphviz

= 2.6
📦
Graphviz

Graphviz

= 2.8
📦
Graphviz

Graphviz

= 2.10
📦
Graphviz

Graphviz

= 2.12
📦
Graphviz

Graphviz

= 2.14
📦
Graphviz

Graphviz

= 2.16
📦
Graphviz

Graphviz

= 2.18
📦
Graphviz

Graphviz

= 2.20.0
📦
Graphviz

Graphviz

= 2.20.1

References & Advisories

相關漏洞威脅