Skip to content

Upgrade System.Drawing.Common version #2303

@gobikulandaisamy

Description

@gobikulandaisamy

ScottPlot Version: 4.1.59

Operating System: Windows and Linux

Application Type: (console, WinForms, WPF, etc...)

Question:

A remote code execution vulnerability exists when parsing certain types of graphics files. This vulnerability only exists on systems running on MacOS or Linux. This CVE ID is unique from GHSA-ghhp-997w-qr28.

Affected versions of System.Drawing.Common

= 4.0.0, < 4.7.2
= 5.0.0, < 5.0.3

Patched versions
4.7.2
5.0.3

Shall we upgrade from System.Drawing.Common 4.6.1 to System.Drawing.Common 4.7.2 ?

For your reference

GHSA-rxg9-xrhp-64gj

image

Images or screenshots often help communication and are encouraged. You can copy/paste or drag/drop images into this box.

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions