Heap-based buffer overflow in the bmreadbodybmp function in bitmap_io.c in potrace before 1.13 allows remote attackers to have unspecified impact via a crafted BMP image, a different vulnerability than CVE-2016-8699, CVE-2016-8700, CVE-2016-8701, CVE-2016-8702, and CVE-2016-8703.
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "libpotrace-dev",
"binary_version": "1.13-2"
},
{
"binary_name": "libpotrace0",
"binary_version": "1.13-2"
},
{
"binary_name": "libpotrace0-dbgsym",
"binary_version": "1.13-2"
},
{
"binary_name": "potrace",
"binary_version": "1.13-2"
},
{
"binary_name": "potrace-dbgsym",
"binary_version": "1.13-2"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "libpotrace-dev",
"binary_version": "1.14-2"
},
{
"binary_name": "libpotrace0",
"binary_version": "1.14-2"
},
{
"binary_name": "libpotrace0-dbgsym",
"binary_version": "1.14-2"
},
{
"binary_name": "potrace",
"binary_version": "1.14-2"
},
{
"binary_name": "potrace-dbgsym",
"binary_version": "1.14-2"
}
]
}