|
247841
|
9.8 |
CRITICAL
Network
|
autotrace_project
|
autotrace
|
libautotrace.a in AutoTrace 0.31.1 has a heap-based buffer overflow in the rle_fread function in input-tga.c:252:15.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-9191
|
2024-11-21 12:35 |
2017-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247842
|
7.5 |
HIGH
Network
|
autotrace_project
|
autotrace
|
libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid free), related to the free_bitmap function in bitmap.c:24:5.
|
CWE-416
Use After Free
|
CVE-2017-9190
|
2024-11-21 12:35 |
2017-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247843
|
7.5 |
HIGH
Network
|
autotrace_project
|
autotrace
|
libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (invalid read and application crash), related to the GET_COLOR function in color.c:16:11.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-9189
|
2024-11-21 12:35 |
2017-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247844
|
9.8 |
CRITICAL
Network
|
autotrace_project
|
autotrace
|
libautotrace.a in AutoTrace 0.31.1 has a "left shift ... cannot be represented in type int" issue in input-bmp.c:516:63.
|
CWE-20
Improper Input Validation
|
CVE-2017-9188
|
2024-11-21 12:35 |
2017-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247845
|
9.8 |
CRITICAL
Network
|
autotrace_project
|
autotrace
|
libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:486:7.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-9187
|
2024-11-21 12:35 |
2017-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247846
|
9.8 |
CRITICAL
Network
|
autotrace_project
|
autotrace
|
libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:326:17.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-9186
|
2024-11-21 12:35 |
2017-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247847
|
9.8 |
CRITICAL
Network
|
autotrace_project
|
autotrace
|
libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:319:7.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-9185
|
2024-11-21 12:35 |
2017-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247848
|
9.8 |
CRITICAL
Network
|
autotrace_project
|
autotrace
|
libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:314:7.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-9184
|
2024-11-21 12:35 |
2017-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247849
|
9.8 |
CRITICAL
Network
|
autotrace_project
|
autotrace
|
libautotrace.a in AutoTrace 0.31.1 has a "cannot be represented in type int" issue in input-bmp.c:309:7.
|
CWE-704
Incorrect Type Conversion or Cast
|
CVE-2017-9183
|
2024-11-21 12:35 |
2017-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247850
|
7.5 |
HIGH
Network
|
autotrace_project
|
autotrace
|
libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (use-after-free and invalid heap read), related to the GET_COLOR function in color.c:16:11.
|
CWE-416
Use After Free
|
CVE-2017-9182
|
2024-11-21 12:35 |
2017-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|