vulnerability

SUSE: CVE-2023-46045: SUSE Linux Security Advisory

Severity
7
CVSS
(AV:L/AC:M/Au:N/C:C/I:C/A:C)
Published
Feb 2, 2024
Added
Apr 22, 2024
Modified
Jan 28, 2025

Description

Graphviz 2.36.0 through 9.x before 10.0.1 has an out-of-bounds read via a crafted config6a file. NOTE: exploitability may be uncommon because this file is typically owned by root.

Solutions

suse-upgrade-graphvizsuse-upgrade-graphviz-develsuse-upgrade-graphviz-docsuse-upgrade-graphviz-gdsuse-upgrade-graphviz-gnomesuse-upgrade-graphviz-guilesuse-upgrade-graphviz-gveditsuse-upgrade-graphviz-javasuse-upgrade-graphviz-luasuse-upgrade-graphviz-perlsuse-upgrade-graphviz-phpsuse-upgrade-graphviz-plugins-coresuse-upgrade-graphviz-rubysuse-upgrade-graphviz-smyrnasuse-upgrade-graphviz-tclsuse-upgrade-graphviz-webpsuse-upgrade-graphviz-x11suse-upgrade-libgraphviz6suse-upgrade-python3-gv
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.