Autotrace Project
Autotrace Project Autotrace: vulnerabilidades y CVE
Autotrace Project Autotrace tiene 55 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 33 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE55
Últimos 12 meses0
Críticas33
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2022-32323 | Alta (7.3) | 0.94% | — | 14 jul 2022 | AutoTrace v0.40.0 was discovered to contain a heap overflow via the ReadImage function at input-bmp.c:660. |
| CVE-2019-19005 | Alta (7.8) | 0.97% | — | 11 feb 2021 | A bitmap double free in main.c in autotrace 0.31.1 allows attackers to cause an unspecified impact via a malformed bitmap image. This may occur after the use-after-free in CVE-2017-9182. |
| CVE-2019-19004 | Baja (3.3) | 1.0% | — | 11 feb 2021 | A biWidth*biBitCnt integer overflow in input-bmp.c in autotrace 0.31.1 allows attackers to provide an unexpected input value to malloc via a malformed bitmap image. |
| CVE-2017-9200 | Crítica (9.8) | 2.3% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-tga.c:528:63. |
| CVE-2017-9199 | Crítica (9.8) | 1.9% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-tga.c:192:19. |
| CVE-2017-9198 | Crítica (9.8) | 1.9% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-tga.c:508:18. |
| CVE-2017-9197 | Crítica (9.8) | 1.9% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-tga.c:498:55. |
| CVE-2017-9196 | Crítica (9.8) | 1.8% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 has a "negative-size-param" issue in the ReadImage function in input-tga.c:528:7. |
| CVE-2017-9195 | Crítica (9.8) | 1.9% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer over-read in the ReadImage function in input-tga.c:620:27. |
| CVE-2017-9194 | Crítica (9.8) | 1.9% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer over-read in the ReadImage function in input-tga.c:559:29. |
| CVE-2017-9193 | Crítica (9.8) | 1.9% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer over-read in the ReadImage function in input-tga.c:538:33. |
| CVE-2017-9192 | Crítica (9.8) | 1.8% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer overflow in the ReadImage function in input-tga.c:528:7. |
| CVE-2017-9191 | Crítica (9.8) | 1.8% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer overflow in the rle_fread function in input-tga.c:252:15. |
| CVE-2017-9190 | Alta (7.5) | 2.5% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid free), related to the free_bitmap function in bitmap.c:24:5. |
| CVE-2017-9189 | Alta (7.5) | 1.8% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid read and application crash), related to the GET_COLOR function in color.c:16:11. |
| CVE-2017-9188 | Crítica (9.8) | 2.3% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 has a "left shift ... cannot be represented in type int" issue in input-bmp.c:516:63. |
| CVE-2017-9187 | Crítica (9.8) | 1.9% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:486:7. |
| CVE-2017-9186 | Crítica (9.8) | 1.9% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:326:17. |
| CVE-2017-9185 | Crítica (9.8) | 1.9% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:319:7. |
| CVE-2017-9184 | Crítica (9.8) | 1.9% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:314:7. |
| CVE-2017-9183 | Crítica (9.8) | 1.9% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:309:7. |
| CVE-2017-9182 | Alta (7.5) | 2.2% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (use-after-free and invalid heap read), related to the GET_COLOR function in color.c:16:11. |
| CVE-2017-9181 | Alta (7.5) | 2.4% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid write and SEGV), related to the ReadImage function in input-bmp.c. |
| CVE-2017-9180 | Alta (7.5) | 2.2% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid read and SEGV), related to the ReadImage function in input-bmp.c:440:14. |
| CVE-2017-9179 | Alta (7.5) | 2.0% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid read and SEGV), related to the ReadImage function in input-bmp.c:425:14. |
| CVE-2017-9178 | Alta (7.5) | 2.0% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid write and SEGV), related to the ReadImage function in input-bmp.c:421:11. |
| CVE-2017-9177 | Alta (7.5) | 2.0% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid read and SEGV), related to the ReadImage function in input-bmp.c:390:12. |
| CVE-2017-9176 | Alta (7.5) | 2.0% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid write and SEGV), related to the ReadImage function in input-bmp.c:370:25. |
| CVE-2017-9175 | Alta (7.5) | 2.0% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid write and SEGV), related to the ReadImage function in input-bmp.c:353:25. |
| CVE-2017-9174 | Alta (7.5) | 2.0% | — | 23 may 2017 | libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid read and SEGV), related to the GET_COLOR function in color.c:21:23. |