PT-2017-18748 · Autotrace+1 · Autotrace+1

Agostino Sarubbo

·

Publicado

2017-05-23

·

Atualizado

2024-07-04

·

CVE-2017-9166

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions AutoTrace version 0.31.1
Description The issue is related to a heap-based buffer over-read in the GET COLOR function, located in color.c. This occurs at line 18, column 11, of the libautotrace.a file in AutoTrace.
Recommendations For AutoTrace version 0.31.1, at the moment, there is no information about a newer version that contains a fix for this issue.

Correção

Out of bounds Read

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2024-9579
CVE-2017-9166

Produtos afetados

Alt Linux
Autotrace