PT-2017-18746 · Autotrace Team+1 · Autotrace+1

Agostino Sarubbo

·

Publicado

2017-05-23

·

Atualizado

2024-07-04

·

CVE-2017-9164

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions AutoTrace version 0.31.1
Description The issue is related to a heap-based buffer over-read in the GET COLOR function, located in color.c. This function is part of the libautotrace.a library in AutoTrace.
Recommendations For AutoTrace version 0.31.1, at the moment, there is no information about a newer version that contains a fix for this issue.

Correção

Out of bounds Read

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2024-9579
CVE-2017-9164

Produtos afetados

Alt Linux
Autotrace