{"affected":[{"ecosystem_specific":{"binaries":[{"gnuplot":"5.2.2-3.3.29","gnuplot-doc":"5.2.2-3.3.29"}]},"package":{"ecosystem":"SUSE:Linux Enterprise Module for Server Applications 15","name":"gnuplot","purl":"pkg:rpm/suse/gnuplot&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Server%20Applications%2015"},"ranges":[{"events":[{"introduced":"0"},{"fixed":"5.2.2-3.3.29"}],"type":"ECOSYSTEM"}]}],"aliases":[],"details":"This update for gnuplot fixes the following issues:\n\nSecurity issues fixed:\n\n- CVE-2018-19492: Fixed a buffer overflow in cairotrm_options function (bsc#1117463)\n- CVE-2018-19491: Fixed a buffer overlow in the PS_options function (bsc#1117464)\n- CVE-2018-19490: Fixed a heap-based buffer overflow in the df_generate_ascii_array_entry function (bsc#1117465)\n","id":"SUSE-SU-2019:0904-1","modified":"2019-04-08T13:42:25Z","published":"2019-04-08T13:42:25Z","references":[{"type":"ADVISORY","url":"https://www.suse.com/support/update/announcement/2019/suse-su-20190904-1/"},{"type":"REPORT","url":"https://bugzilla.suse.com/1117463"},{"type":"REPORT","url":"https://bugzilla.suse.com/1117464"},{"type":"REPORT","url":"https://bugzilla.suse.com/1117465"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-19490"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-19491"},{"type":"WEB","url":"https://www.suse.com/security/cve/CVE-2018-19492"}],"related":["CVE-2018-19490","CVE-2018-19491","CVE-2018-19492"],"summary":"Security update for gnuplot","upstream":["CVE-2018-19490","CVE-2018-19491","CVE-2018-19492"]}