~ubuntu-security/ubuntu-cve-tracker/master

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
Candidate: CVE-2017-9168
PublicDate: 2017-05-23
References:
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-9168
 https://blogs.gentoo.org/ago/2017/05/20/autotrace-multiple-vulnerabilities-the-autotrace-nightmare/
Description:
 libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer overflow in the
 ReadImage function in input-bmp.c:353:25.
Ubuntu-Description:
Notes:
Bugs:
Priority: medium
Discovered-by: Agostino Sarubbo
Assigned-to:

Patches_autotrace:
upstream_autotrace: needs-triage
precise/esm_autotrace: DNE
trusty_autotrace: needed
vivid/stable-phone-overlay_autotrace: DNE
vivid/ubuntu-core_autotrace: DNE
xenial_autotrace: needed
yakkety_autotrace: ignored (reached end-of-life)
zesty_autotrace: needed
devel_autotrace: DNE