Stack-overflow in fig2dev in version 3.2.9a allows an attacker possible code execution via local input manipulation via read_objects function.
External reference: https://sourceforge.net/p/mcj/tickets/191/