CVE-2025-3359
CVSS 3.1 Score 6.2 of 10 (medium)
Details
Published Apr 7, 2025
CWE ID 754
Summary
CVE-2025-3359 is a newly disclosed vulnerability affecting GNUPlot, a popular plotting utility. The issue arises from a segmentation fault in the IO_str_init_internal function. Successful exploitation of this vulnerability may lead to a compromise of the affected system environment. Attackers can potentially inject malicious input to trigger the flaw, resulting in unintended behavior or crashes. Users are urged to update their GNUPlot installations to the latest version to mitigate this risk.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.