Описание
Potrace 1.14 has a heap-based buffer over-read in the interpolate_cubic function in mkbitmap.c.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| potrace | fixed | 1.15-1 | package |
Примечания
https://github.com/hackerlib/hackerlib-vul/tree/master/potrace/heap-buffer-overflow-mkbitmap
Upstream bug report https://sourceforge.net/p/potrace/bugs/22/
Crash only in CLI tool mkbitmap, negligible security impact
Связанные уязвимости
CVSS3: 7.5
ubuntu
больше 8 лет назад
Potrace 1.14 has a heap-based buffer over-read in the interpolate_cubic function in mkbitmap.c.
CVSS3: 7.5
nvd
больше 8 лет назад
Potrace 1.14 has a heap-based buffer over-read in the interpolate_cubic function in mkbitmap.c.
CVSS3: 7.5
github
больше 3 лет назад
Potrace 1.14 has a heap-based buffer over-read in the interpolate_cubic function in mkbitmap.c.