autotrace-0.31.1-65.el9

エラータID: AXSA:2023-5497:01

Release date: 
Wednesday, May 24, 2023 - 09:18
Subject: 
autotrace-0.31.1-65.el9
Affected Channels: 
MIRACLE LINUX 9 for x86_64
Severity: 
Moderate
Description: 

AutoTrace is a program for converting bitmaps to vector graphics.

Security Fix(es):

* autotrace: heap-buffer overflow via the ReadImage() at input-bmp.c (CVE-2022-32323)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the MIRACLE LINUX 9.2 Release Notes linked from the References section.

CVE-2022-32323
AutoTrace v0.40.0 was discovered to contain a heap overflow via the ReadImage function at input-bmp.c:660.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. autotrace-0.31.1-65.el9.src.rpm
    MD5: 9b33b094c0742eb9b59764214cd24723
    SHA-256: 077991e96cab98431bc20cc67aebb385fe5db996ca8b0b418ca6ea6b28718bdc
    Size: 372.35 kB

Asianux Server 9 for x86_64
  1. autotrace-0.31.1-65.el9.i686.rpm
    MD5: e0228ee9e915c70f56c30fc52885164f
    SHA-256: d39966dcc410ed3db0d20157f626ff136fb811bae518e658752aaceb0a982670
    Size: 145.09 kB
  2. autotrace-0.31.1-65.el9.x86_64.rpm
    MD5: b044dacb2da8681383d3ad942a0ff7ad
    SHA-256: 0f60a001217a16fcdc3771f3ff7dc52f4e20c98091450bf637b511165290b6fa
    Size: 139.83 kB