Bugzilla – Bug 998460
VUL-0: CVE-2016-7392: autotrace: Out of bounds write when converting bmp image
Last modified: 2018-10-30 08:21:05 UTC
rh#1375255 It was found that converting any bmp image will cause out-of-bounds heap write in autotrace. More details: https://blogs.gentoo.org/ago/2016/09/10/autotrace-heap-based-buffer-overflow-in-pstoedit_suffix_table_init-output-pstoedit-c/ References: https://bugzilla.redhat.com/show_bug.cgi?id=1375255 http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-7392 http://seclists.org/oss-sec/2016/q3/475
bugbot adjusting priority
we are going to drop the whole package anyway