Heap-based buffer overflow in the bmreadbodybmp function in bitmap_io.c in potrace before 1.13 allows remote attackers to have unspecified impact via a crafted BMP image, a different vulnerability than CVE-2016-8698, CVE-2016-8699, CVE-2016-8701, CVE-2016-8702, and CVE-2016-8703.
{
    "availability": "No subscription required",
    "binaries": [
        {
            "binary_name": "libpotrace-dev",
            "binary_version": "1.13-2"
        },
        {
            "binary_name": "libpotrace0",
            "binary_version": "1.13-2"
        },
        {
            "binary_name": "libpotrace0-dbgsym",
            "binary_version": "1.13-2"
        },
        {
            "binary_name": "potrace",
            "binary_version": "1.13-2"
        },
        {
            "binary_name": "potrace-dbgsym",
            "binary_version": "1.13-2"
        }
    ]
}
          {
    "availability": "No subscription required",
    "binaries": [
        {
            "binary_name": "libpotrace-dev",
            "binary_version": "1.14-2"
        },
        {
            "binary_name": "libpotrace0",
            "binary_version": "1.14-2"
        },
        {
            "binary_name": "libpotrace0-dbgsym",
            "binary_version": "1.14-2"
        },
        {
            "binary_name": "potrace",
            "binary_version": "1.14-2"
        },
        {
            "binary_name": "potrace-dbgsym",
            "binary_version": "1.14-2"
        }
    ]
}