Integer Underflow Leading to Buffer Overflow in AutoTrace 0.31.1

Integer Underflow Leading to Buffer Overflow in AutoTrace 0.31.1

CVE-2013-1953 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:P/A:P

Integer underflow in the input_bmp_reader function in input-bmp.c in AutoTrace 0.31.1 allows context-dependent attackers to have an unspecified impact via a small value in the biSize field in the header of a BMP file, which triggers a buffer overflow.

Learn more about our Web Application Penetration Testing UK.