DIA XFIG File Import Multiple Remote Buffer Overflow Vulnerabilities Solution:
The vendor has released version 0.95-pre6 along with a patch for 0.94 to address these issues.
Version 0.95-pre6 is available from the Gnome CVS tree. The patch is available in the Gnome web reference (Vulnerability in xfig import code).
Please see the references for more information and vendor advisories.
DIA DIA 0.94
DIA DIA 0.93
DIA DIA 0.92.2