Autotrace Project Autotrace vulnerabilities
55 known vulnerabilities affecting autotrace_project/autotrace.
Total CVEs
55
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL33HIGH19MEDIUM2LOW1
Vulnerabilities
Page 3 of 3
CVE-2017-9158P4HIGHCVSS 7.5v0.31.12017-05-23
CVE-2017-9158 [HIGH] CWE-787 CVE-2017-9158: libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid wri
libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid write and SEGV), related to the pnm_load_raw function in input-pnm.c:336:11.
nvd
CVE-2017-9175P4HIGHCVSS 7.5v0.31.12017-05-23
CVE-2017-9175 [HIGH] CWE-787 CVE-2017-9175: libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid wri
libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid write and SEGV), related to the ReadImage function in input-bmp.c:353:25.
nvd
CVE-2019-19005P4HIGHCVSS 7.8v0.31.12021-02-11
CVE-2019-19005 [HIGH] CVE-2019-19005: A bitmap double free in main.c in autotrace 0.31.1 allows attackers to cause an unspecified impact v
A bitmap double free in main.c in autotrace 0.31.1 allows attackers to cause an unspecified impact via a malformed bitmap image. This may occur after the use-after-free in CVE-2017-9182.
nvd
CVE-2017-9154P4HIGHCVSS 7.5v0.31.12017-05-23
CVE-2017-9154 [HIGH] CWE-125 CVE-2017-9154: libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid rea
libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid read and SEGV), related to the GET_COLOR function in color.c:16:11.
nvd
CVE-2017-9174P4HIGHCVSS 7.5v0.31.12017-05-23
CVE-2017-9174 [HIGH] CWE-125 CVE-2017-9174: libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid rea
libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid read and SEGV), related to the GET_COLOR function in color.c:21:23.
nvd
CVE-2017-9157P4HIGHCVSS 7.5v0.31.12017-05-23
CVE-2017-9157 [HIGH] CWE-787 CVE-2017-9157: libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid wri
libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid write and SEGV), related to the pnm_load_ascii function in input-pnm.c:306:14.
nvd
CVE-2017-9180P4HIGHCVSS 7.5v0.31.12017-05-23
CVE-2017-9180 [HIGH] CWE-125 CVE-2017-9180: libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid rea
libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid read and SEGV), related to the ReadImage function in input-bmp.c:440:14.
nvd
CVE-2017-9179P4HIGHCVSS 7.5v0.31.12017-05-23
CVE-2017-9179 [HIGH] CWE-125 CVE-2017-9179: libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid rea
libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid read and SEGV), related to the ReadImage function in input-bmp.c:425:14.
nvd
CVE-2017-9177P4HIGHCVSS 7.5v0.31.12017-05-23
CVE-2017-9177 [HIGH] CWE-125 CVE-2017-9177: libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid rea
libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid read and SEGV), related to the ReadImage function in input-bmp.c:390:12.
nvd
CVE-2017-9155P4HIGHCVSS 7.5v0.31.12017-05-23
CVE-2017-9155 [HIGH] CWE-125 CVE-2017-9155: libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid rea
libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid read and SEGV), related to the input_pnm_reader function in input-pnm.c:243:3.
nvd
CVE-2022-32323P4HIGHCVSS 7.3v0.40.02022-07-14
CVE-2022-32323 [HIGH] CWE-787 CVE-2022-32323: AutoTrace v0.40.0 was discovered to contain a heap overflow via the ReadImage function at input-bmp.
AutoTrace v0.40.0 was discovered to contain a heap overflow via the ReadImage function at input-bmp.c:660.
nvd
CVE-2017-9189P4HIGHCVSS 7.5v0.31.12017-05-23
CVE-2017-9189 [HIGH] CWE-125 CVE-2017-9189: libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid rea
libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid read and application crash), related to the GET_COLOR function in color.c:16:11.
nvd
CVE-2013-1953P4MEDIUMCVSS 6.8v0.31.12013-12-09
CVE-2013-1953 [MEDIUM] CWE-189 CVE-2013-1953: Integer underflow in the input_bmp_reader function in input-bmp.c in AutoTrace 0.31.1 allows context
Integer underflow in the input_bmp_reader function in input-bmp.c in AutoTrace 0.31.1 allows context-dependent attackers to have an unspecified impact via a small value in the biSize field in the header of a BMP file, which triggers a buffer overflow.
nvd
CVE-2016-7392P4MEDIUMCVSS 5.5v0.31.12017-02-15
CVE-2016-7392 [MEDIUM] CWE-787 CVE-2016-7392: Heap-based buffer overflow in the pstoedit_suffix_table_init function in output-pstoedit.c in AutoTr
Heap-based buffer overflow in the pstoedit_suffix_table_init function in output-pstoedit.c in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted bmp image file.
nvdosv
CVE-2019-19004P4LOWCVSS 3.3v0.31.12021-02-11
CVE-2019-19004 [LOW] CWE-190 CVE-2019-19004: A biWidth*biBitCnt integer overflow in input-bmp.c in autotrace 0.31.1 allows attackers to provide a
A biWidth*biBitCnt integer overflow in input-bmp.c in autotrace 0.31.1 allows attackers to provide an unexpected input value to malloc via a malformed bitmap image.
nvd
← Previous3 / 3