C-Note-06-016: Red Hat Security Advisory RHSA-2006:0280-8 (Rev. 6/2/2006)
Three buffer overflow bugs were discovered in Dia's xfig file format importer. If an attacker is able to trick a Dia user into opening a carefully crafted xfig file, it may be possible to execute arbitrary code as the user running Dia.

CVE-2006-1550

CVE-2006-2453

CVE-2006-2480

CIAC would like to thank Red Hat for this information. Please visit their web site to read the article:

https://rhn.redhat.com/errata/RHSA-2006-0280.html

Additional link: https://rhn.redhat.com/errata/RHSA-2006-0541.html