CVE-2017-9182 PUBLISHED

libautotrace.a in AutoTrace 0.31.1 allows remote attackers to cause a denial of service (use-after-free and invalid heap read), related to the GET_COLOR function in color.c:16:11.

EPSS 0.85% · 74.7th percentile

Risk Scores

EPSS Score
0.85%
74.7th percentile

Affected Products

VendorProductVersions
Ubuntu:14.04:LTSautotrace0, 0.31.1-16build2, 0.31.1-16+deb7u1build0.14.04.1
Ubuntu:16.04:LTSautotrace0, 0.31.1-16+nmu1build1, 0.31.1-16+nmu1.1

Timeline

References

Open in Interactive Console →