The bm_new function in bitmap.h in potrace before 1.13 allows remote attackers to cause a denial of service (divide-by-zero error and crash) via a crafted BMP image.
The product divides a value by zero.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Potrace | Potrace_project | * | 1.12 (including) |
Inkscape | Ubuntu | precise | * |
Inkscape | Ubuntu | yakkety | * |
Potrace | Ubuntu | precise | * |
Potrace | Ubuntu | trusty | * |
Potrace | Ubuntu | upstream | * |
Potrace | Ubuntu | yakkety | * |