autotrace-0.31.1-65.el9
エラータID: AXSA:2023-5497:01
Release date:
Wednesday, May 24, 2023 - 09:18
Subject:
autotrace-0.31.1-65.el9
Affected Channels:
MIRACLE LINUX 9 for x86_64
Severity:
Moderate
Description:
AutoTrace is a program for converting bitmaps to vector graphics.
Security Fix(es):
* autotrace: heap-buffer overflow via the ReadImage() at input-bmp.c (CVE-2022-32323)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Additional Changes:
For detailed information on changes in this release, see the MIRACLE LINUX 9.2 Release Notes linked from the References section.
CVE-2022-32323
AutoTrace v0.40.0 was discovered to contain a heap overflow via the ReadImage function at input-bmp.c:660.
Solution:
Update packages.
CVEs:
CVE-2022-32323
AutoTrace v0.40.0 was discovered to contain a heap overflow via the ReadImage function at input-bmp.c:660.
AutoTrace v0.40.0 was discovered to contain a heap overflow via the ReadImage function at input-bmp.c:660.
Additional Info:
N/A
Download:
SRPMS
- autotrace-0.31.1-65.el9.src.rpm
MD5: 9b33b094c0742eb9b59764214cd24723
SHA-256: 077991e96cab98431bc20cc67aebb385fe5db996ca8b0b418ca6ea6b28718bdc
Size: 372.35 kB
Asianux Server 9 for x86_64
- autotrace-0.31.1-65.el9.i686.rpm
MD5: e0228ee9e915c70f56c30fc52885164f
SHA-256: d39966dcc410ed3db0d20157f626ff136fb811bae518e658752aaceb0a982670
Size: 145.09 kB - autotrace-0.31.1-65.el9.x86_64.rpm
MD5: b044dacb2da8681383d3ad942a0ff7ad
SHA-256: 0f60a001217a16fcdc3771f3ff7dc52f4e20c98091450bf637b511165290b6fa
Size: 139.83 kB