Autotrace Project Autotrace vulnerabilities
55 known vulnerabilities affecting autotrace_project/autotrace.
Total CVEs
55
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL33HIGH19MEDIUM2LOW1
Vulnerabilities
Page 1 of 3
CVE-2022-32323HIGHCVSS 7.3v0.40.02022-07-14
CVE-2022-32323 [HIGH] CWE-787 CVE-2022-32323: AutoTrace v0.40.0 was discovered to contain a heap overflow via the ReadImage function at input-bmp.
AutoTrace v0.40.0 was discovered to contain a heap overflow via the ReadImage function at input-bmp.c:660.
nvd
CVE-2019-19005HIGHCVSS 7.8v0.31.12021-02-11
CVE-2019-19005 [HIGH] CVE-2019-19005: A bitmap double free in main.c in autotrace 0.31.1 allows attackers to cause an unspecified impact v
A bitmap double free in main.c in autotrace 0.31.1 allows attackers to cause an unspecified impact via a malformed bitmap image. This may occur after the use-after-free in CVE-2017-9182.
nvd
CVE-2019-19004LOWCVSS 3.3v0.31.12021-02-11
CVE-2019-19004 [LOW] CWE-190 CVE-2019-19004: A biWidth*biBitCnt integer overflow in input-bmp.c in autotrace 0.31.1 allows attackers to provide a
A biWidth*biBitCnt integer overflow in input-bmp.c in autotrace 0.31.1 allows attackers to provide an unexpected input value to malloc via a malformed bitmap image.
nvd
CVE-2017-9194CRITICALCVSS 9.8v0.31.12017-05-23
CVE-2017-9194 [CRITICAL] CWE-125 CVE-2017-9194: libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer over-read in the ReadImage function in in
libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer over-read in the ReadImage function in input-tga.c:559:29.
nvd
CVE-2017-9200CRITICALCVSS 9.8v0.31.12017-05-23
CVE-2017-9200 [CRITICAL] CWE-190 CVE-2017-9200: libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-tga.c:52
libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-tga.c:528:63.
nvd
CVE-2017-9187CRITICALCVSS 9.8v0.31.12017-05-23
CVE-2017-9187 [CRITICAL] CWE-190 CVE-2017-9187: libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:48
libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:486:7.
nvd
CVE-2017-9193CRITICALCVSS 9.8v0.31.12017-05-23
CVE-2017-9193 [CRITICAL] CWE-125 CVE-2017-9193: libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer over-read in the ReadImage function in in
libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer over-read in the ReadImage function in input-tga.c:538:33.
nvd
CVE-2017-9165CRITICALCVSS 9.8v0.31.12017-05-23
CVE-2017-9165 [CRITICAL] CWE-125 CVE-2017-9165: libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer over-read in the GET_COLOR function in co
libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer over-read in the GET_COLOR function in color.c:17:11.
nvd
CVE-2017-9153CRITICALCVSS 9.8v0.31.12017-05-23
CVE-2017-9153 [CRITICAL] CWE-119 CVE-2017-9153: libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer overflow in the pnm_load_rawpbm function
libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer overflow in the pnm_load_rawpbm function in input-pnm.c:391:13.
nvd
CVE-2017-9164CRITICALCVSS 9.8v0.31.12017-05-23
CVE-2017-9164 [CRITICAL] CWE-125 CVE-2017-9164: libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer over-read in the GET_COLOR function in co
libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer over-read in the GET_COLOR function in color.c:16:11.
nvd
CVE-2017-9197CRITICALCVSS 9.8v0.31.12017-05-23
CVE-2017-9197 [CRITICAL] CWE-190 CVE-2017-9197: libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-tga.c:49
libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-tga.c:498:55.
nvd
CVE-2017-9151CRITICALCVSS 9.8v0.31.12017-05-23
CVE-2017-9151 [CRITICAL] CWE-119 CVE-2017-9151: libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer overflow in the pnm_load_ascii function i
libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer overflow in the pnm_load_ascii function in input-pnm.c:303:12.
nvd
CVE-2017-9169CRITICALCVSS 9.8v0.31.12017-05-23
CVE-2017-9169 [CRITICAL] CWE-119 CVE-2017-9169: libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer overflow in the ReadImage function in inp
libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer overflow in the ReadImage function in input-bmp.c:355:25.
nvd
CVE-2017-9152CRITICALCVSS 9.8v0.31.12017-05-23
CVE-2017-9152 [CRITICAL] CWE-125 CVE-2017-9152: libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer over-read in the pnm_load_raw function in
libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer over-read in the pnm_load_raw function in input-pnm.c:346:41.
nvd
CVE-2017-9162CRITICALCVSS 9.8v0.31.12017-05-23
CVE-2017-9162 [CRITICAL] CWE-190 CVE-2017-9162: libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in autotrace.c:19
libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in autotrace.c:191:2.
nvd
CVE-2017-9185CRITICALCVSS 9.8v0.31.12017-05-23
CVE-2017-9185 [CRITICAL] CWE-190 CVE-2017-9185: libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:31
libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:319:7.
nvd
CVE-2017-9160CRITICALCVSS 9.8v0.31.12017-05-23
CVE-2017-9160 [CRITICAL] CWE-119 CVE-2017-9160: libautotrace.a in AutoTrace 0.31.1 has a stack-based buffer overflow in the pnmscanner_gettoken func
libautotrace.a in AutoTrace 0.31.1 has a stack-based buffer overflow in the pnmscanner_gettoken function in input-pnm.c:458:12.
nvd
CVE-2017-9184CRITICALCVSS 9.8v0.31.12017-05-23
CVE-2017-9184 [CRITICAL] CWE-190 CVE-2017-9184: libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:31
libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:314:7.
nvd
CVE-2017-9173CRITICALCVSS 9.8v0.31.12017-05-23
CVE-2017-9173 [CRITICAL] CWE-119 CVE-2017-9173: libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer overflow in the ReadImage function in inp
libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer overflow in the ReadImage function in input-bmp.c:497:29.
nvd
CVE-2017-9183CRITICALCVSS 9.8v0.31.12017-05-23
CVE-2017-9183 [CRITICAL] CWE-704 CVE-2017-9183: libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:30
libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:309:7.
nvd
1 / 3Next →