Medium severity5.5NVD Advisory· Published Jan 31, 2017· Updated Jun 17, 2026
CVE-2016-8695
CVE-2016-8695
Description
The bm_readbody_bmp function in bitmap_io.c in potrace before 1.13 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted BMP image, a different vulnerability than CVE-2016-8694 and CVE-2016-8696.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:potrace_project:potrace:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:potrace_project:potrace:*:*:*:*:*:*:*:*range: <=1.12
- (no CPE)range: <1.13
Patches
Vulnerability mechanics
References
5- potrace.sourceforge.net/ChangeLognvdRelease NotesThird Party Advisory
- www.openwall.com/lists/oss-security/2016/08/18/11nvdMailing ListThird Party Advisory
- www.openwall.com/lists/oss-security/2016/10/16/12nvdMailing ListThird Party Advisory
- www.securityfocus.com/bid/93778nvdThird Party AdvisoryVDB Entry
- blogs.gentoo.org/ago/2016/08/08/potrace-multiple-three-null-pointer-dereference-in-bm_readbody_bmp-bitmap_io-c/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.