CVE-2017-9184
https://notcve.org/view.php?id=CVE-2017-9184
libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:314:7. libautotrace.a en la versión 0.31.1 de AutoTrace tiene un fallo \"cannot be represented in type int\" en input-bmp.c:314:7. • https://blogs.gentoo.org/ago/2017/05/20/autotrace-multiple-vulnerabilities-the-autotrace-nightmare • CWE-190: Integer Overflow or Wraparound •
CVE-2017-9191
https://notcve.org/view.php?id=CVE-2017-9191
libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer overflow in the rle_fread function in input-tga.c:252:15. Libautotrace.a en AutoTrace 0.31.1 tiene un desbordamiento de búfer basado en memoria dinámica (heap) en la función rle_fread en input-tga.c:252:15. • https://blogs.gentoo.org/ago/2017/05/20/autotrace-multiple-vulnerabilities-the-autotrace-nightmare • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-9160
https://notcve.org/view.php?id=CVE-2017-9160
libautotrace.a in AutoTrace 0.31.1 has a stack-based buffer overflow in the pnmscanner_gettoken function in input-pnm.c:458:12. libautotrace.a en la versión 0.31.1 de AutoTrace tiene un desbordamiento de búfer basado en pila en la función pnmscanner_gettoken en input-pnm.c:458:12. • https://blogs.gentoo.org/ago/2017/05/20/autotrace-multiple-vulnerabilities-the-autotrace-nightmare • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2017-9177
https://notcve.org/view.php?id=CVE-2017-9177
libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid read and SEGV), related to the ReadImage function in input-bmp.c:390:12. libautotrace.a en AutoTrace 0.31.1 permite a los atacantes remotos provocar una denegación de servicio (lectura inválida y SEGV) relacionada con la función ReadImage en input-bmp.c:390:12. • https://blogs.gentoo.org/ago/2017/05/20/autotrace-multiple-vulnerabilities-the-autotrace-nightmare • CWE-125: Out-of-bounds Read •
CVE-2017-9165
https://notcve.org/view.php?id=CVE-2017-9165
libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer over-read in the GET_COLOR function in color.c:17:11. libautotrace.a en AutoTrace 0.31.1 tiene una sobrelectura de búfer en la función GET_COLOR en color.c:17:11. • https://blogs.gentoo.org/ago/2017/05/20/autotrace-multiple-vulnerabilities-the-autotrace-nightmare • CWE-125: Out-of-bounds Read •