Integer underflow in the input_bmp_reader function in input-bmp.c in AutoTrace 0.31.1 allows context-dependent attackers to have an unspecified impact via a small value in the biSize field in the header of a BMP file, which triggers a buffer overflow.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Autotrace | Autotrace_project | 0.31.1 (including) | 0.31.1 (including) |
Autotrace | Ubuntu | hardy | * |
Autotrace | Ubuntu | lucid | * |
Autotrace | Ubuntu | oneiric | * |
Autotrace | Ubuntu | precise | * |
Autotrace | Ubuntu | quantal | * |
Autotrace | Ubuntu | raring | * |
Autotrace | Ubuntu | saucy | * |
Autotrace | Ubuntu | trusty | * |
Autotrace | Ubuntu | upstream | * |
Autotrace | Ubuntu | utopic | * |
Gimp | Ubuntu | hardy | * |
Gimp | Ubuntu | upstream | * |
Sam2p | Ubuntu | esm-apps/xenial | * |
Sam2p | Ubuntu | esm-infra-legacy/trusty | * |
Sam2p | Ubuntu | hardy | * |
Sam2p | Ubuntu | lucid | * |
Sam2p | Ubuntu | oneiric | * |
Sam2p | Ubuntu | precise | * |
Sam2p | Ubuntu | quantal | * |
Sam2p | Ubuntu | raring | * |
Sam2p | Ubuntu | saucy | * |
Sam2p | Ubuntu | trusty | * |
Sam2p | Ubuntu | trusty/esm | * |
Sam2p | Ubuntu | upstream | * |
Sam2p | Ubuntu | utopic | * |
Sam2p | Ubuntu | vivid | * |
Sam2p | Ubuntu | wily | * |
Sam2p | Ubuntu | xenial | * |