potrace: multiple(six) heap-based buffer overflow in bm_readbody_bmp (bitmap_io.c)

Description: potrace is a utility that transforms bitmaps into vector graphics. A crafted images (bmp) revealed, through a fuzz testing, the presence of SIX heap-based buffer overflow. To avoid to make the post much long, I splitted the ASan output … Continue reading potrace: multiple(six) heap-based buffer overflow in bm_readbody_bmp (bitmap_io.c)