AutoTrace converts bitmap to vector graphics.
Heap-based buffer overflows have been discovered in the pstoedit_suffix_table_init and pnm_load_rawpbm functions of AutoTrace.
Remote attackers, by enticing a user to process a crafted bmp image file, could cause a Denial of Service condition.
There is no known workaround at this time.
Gentoo has discontinued support for AutoTrace. We recommend that users unmerge AutoTrace:
# emerge --unmerge "media-gfx/autotrace"