Записи enlightenment
32 опубликованных записей вендора enlightenment.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 1 · 3,1 %
- Pre-auth RCE
- 13
- С записью об исправлении
- 90,6 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer5
- CWE-189 Numeric Errors2
- CWE-20 Improper Input Validation2
- CWE-264 Permissions, Privileges, and Access Controls2
- CWE-787 Out-of-bounds Write2
- CWE-269 Improper Privilege Management1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
32 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
42В плане | CVE-2004-1025Эксплойта нет | Multiple heap-based buffer overflows in imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow remote attackeenlightenment · imlib | Критическая10,0 | — | 5,2 % | 10 янв. 2005 г. |
41В плане | CVE-2016-4024Эксплойта нет | Integer overflow in imlib2 before 1.4.9 on 32-bit platforms allows remote attackers to execute arbitrary code via large dimensions in an imaenlightenment · imlib2 · CWE-119 | Критическая9,8 | — | 5,5 % | 13 мая 2016 г. |
41В плане | CVE-2004-1026Эксплойта нет | Multiple integer overflows in the image handler for imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow reenlightenment · imlib | Критическая10,0 | — | 4,9 % | 10 янв. 2005 г. |
41В плане | CVE-2008-6079Эксплойта нет | imlib2 before 1.4.2 allows context-dependent attackers to have an unspecified impact via a crafted (1) ARGB, (2) BMP, (3) JPEG, (4) LBM, (5)enlightenment · imlib2 | Критическая10,0 | — | 2,8 % | 6 февр. 2009 г. |
36Наблюдать | CVE-2020-12761Эксплойта нет | modules/loaders/loader_ico.c in imlib2 1.6.0 has an integer overflow (with resultant invalid memory allocations and out-of-bounds reads) viaenlightenment · imlib2 · CWE-125 | Критическая9,1 | — | 1,6 % | 9 мая 2020 г. |
35Наблюдать | CVE-2024-25448Эксплойта нет | An issue in the imlib_free_image_and_decache function of imlib2 v1.9.1 allows attackers to cause a heap buffer overflow via parsing a crafteenlightenment · imlib2 · CWE-787 | Высокая8,8 | — | 0,7 % | 9 февр. 2024 г. |
35Наблюдать | CVE-2024-25447Эксплойта нет | An issue in the imlib_load_image_with_error_return function of imlib2 v1.9.1 allows attackers to cause a heap buffer overflow via parsing a enlightenment · imlib2 · CWE-787 | Высокая8,8 | — | 0,7 % | 9 февр. 2024 г. |
35Наблюдать | CVE-2024-25450Эксплойта нет | imlib2 v1.9.1 was discovered to mishandle memory allocation in the function init_imlib_fonts().enlightenment · imlib2 · CWE-401 | Высокая8,8 | — | 0,7 % | 9 февр. 2024 г. |
33Наблюдать | CVE-2022-37706Готовый эксплойт | enlightenment_sys in Enlightenment before 0.25.4 allows local users to gain privileges because it is setuid root, and the system library funenlightenment · enlightenment · CWE-269 | Высокая7,8 | — | 5,5 % | 25 дек. 2022 г. |
33Наблюдать | CVE-2016-3994Эксплойта нет | The GIF loader in imlib2 before 1.4.9 allows remote attackers to cause a denial of service (application crash) or obtain sensitive informatidebian · debian linux · CWE-119 | Высокая8,2 | — | 2,4 % | 13 мая 2016 г. |
32Наблюдать | CVE-2004-0827Эксплойта нет | Multiple buffer overflows in the ImageMagick graphics library 5.x before 5.4.4, and 6.x before 6.0.6.2, allow remote attackers to cause a deimagemagick · imagemagick | Высокая7,5 | — | 5,5 % | 16 сент. 2004 г. |
32Наблюдать | CVE-2018-20167Эксплойта нет | Terminology before 1.3.1 allows Remote Code Execution because popmedia is mishandled, as demonstrated by an unsafe "cat README.md" command wenlightenment · terminology · CWE-74 | Высокая7,8 | — | 2,7 % | 17 дек. 2018 г. |
31Наблюдать | CVE-2004-0817Эксплойта нет | Multiple heap-based buffer overflows in the imlib BMP image handler allow remote attackers to execute arbitrary code via a crafted BMP file.enlightenment · imlib | Высокая7,5 | — | 4,9 % | 31 дек. 2004 г. |
31Наблюдать | CVE-2008-5187Эксплойта нет | The load function in the XPM loader for imlib2 1.4.2, and possibly other versions, allows attackers to cause a denial of service (crash) andenlightenment · imlib2 · CWE-119 | Высокая7,5 | — | 3,6 % | 20 нояб. 2008 г. |
31Наблюдать | CVE-2014-9764Эксплойта нет | imlib2 before 1.4.7 allows remote attackers to cause a denial of service (segmentation fault) via a crafted GIF file.debian · debian linux · CWE-20 | Высокая7,5 | — | 2,7 % | 13 мая 2016 г. |
31Наблюдать | CVE-2014-9771Эксплойта нет | Integer overflow in imlib2 before 1.4.7 allows remote attackers to cause a denial of service (memory consumption or application crash) via aenlightenment · imlib2 | Высокая7,5 | — | 2,7 % | 13 мая 2016 г. |
31Наблюдать | CVE-2014-9763Эксплойта нет | imlib2 before 1.4.7 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted PNM filedebian · debian linux · CWE-189 | Высокая7,5 | — | 2,7 % | 13 мая 2016 г. |
31Наблюдать | CVE-2014-9762Эксплойта нет | imlib2 before 1.4.7 allows remote attackers to cause a denial of service (segmentation fault) via a GIF image without a colormap.enlightenment · imlib2 · CWE-20 | Высокая7,5 | — | 2,7 % | 13 мая 2016 г. |
31Наблюдать | CVE-2016-3993Эксплойта нет | Off-by-one error in the __imlib_MergeUpdate function in lib/updates.c in imlib2 before 1.4.9 allows remote attackers to cause a denial of seenlightenment · imlib2 · CWE-119 | Высокая7,5 | — | 2,5 % | 13 мая 2016 г. |
31Наблюдать | CVE-2011-5326Эксплойта нет | imlib2 before 1.4.9 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) by drawing a 2x1 ellipdebian · debian linux · CWE-189 | Высокая7,5 | — | 2,5 % | 13 мая 2016 г. |
31Наблюдать | CVE-2002-0168Эксплойта нет | Vulnerability in Imlib before 1.9.13 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code by manipulatienlightenment · imlib | Высокая7,5 | — | 2,4 % | 22 апр. 2002 г. |
31Наблюдать | CVE-2002-0167Эксплойта нет | Imlib before 1.9.13 sometimes uses the NetPBM package to load trusted images, which could allow attackers to cause a denial of service (crasenlightenment · imlib | Высокая7,5 | — | 2,4 % | 22 апр. 2002 г. |
31Наблюдать | CVE-2015-8971Эксплойта нет | Terminology 0.7.0 allows remote attackers to execute arbitrary commands via escape sequences that modify the window title and then are writtdebian · debian linux · CWE-77 | Высокая7,8 | — | 1,1 % | 23 янв. 2017 г. |
31Наблюдать | CVE-2014-1845Эксплойта нет | An unspecified setuid root helper in Enlightenment before 0.17.6 allows local users to gain privileges by leveraging failure to properly sanenlightenment · enlightenment · CWE-264 | Высокая7,8 | — | 0,4 % | 27 апр. 2018 г. |
31Наблюдать | CVE-2014-1846Эксплойта нет | Enlightenment before 0.17.6 might allow local users to gain privileges via vectors involving the gdb method.enlightenment · enlightenment · CWE-264 | Высокая7,8 | — | 0,4 % | 27 апр. 2018 г. |
- CVE-2004-102542В плане
Multiple heap-based buffer overflows in imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow remote attacke
КритическаяCVSS 10,0Эксплойта нетEPSS 5 %enlightenment · imlib10 янв. 2005 г.
- CVE-2016-402441В плане
Integer overflow in imlib2 before 1.4.9 on 32-bit platforms allows remote attackers to execute arbitrary code via large dimensions in an ima
КритическаяCVSS 9,8Эксплойта нетEPSS 6 %enlightenment · imlib213 мая 2016 г.
- CVE-2004-102641В плане
Multiple integer overflows in the image handler for imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow re
КритическаяCVSS 10,0Эксплойта нетEPSS 5 %enlightenment · imlib10 янв. 2005 г.
- CVE-2008-607941В плане
imlib2 before 1.4.2 allows context-dependent attackers to have an unspecified impact via a crafted (1) ARGB, (2) BMP, (3) JPEG, (4) LBM, (5)
КритическаяCVSS 10,0Эксплойта нетEPSS 3 %enlightenment · imlib26 февр. 2009 г.
- CVE-2020-1276136Наблюдать
modules/loaders/loader_ico.c in imlib2 1.6.0 has an integer overflow (with resultant invalid memory allocations and out-of-bounds reads) via
КритическаяCVSS 9,1Эксплойта нетEPSS 2 %enlightenment · imlib29 мая 2020 г.
- CVE-2024-2544835Наблюдать
An issue in the imlib_free_image_and_decache function of imlib2 v1.9.1 allows attackers to cause a heap buffer overflow via parsing a crafte
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %enlightenment · imlib29 февр. 2024 г.
- CVE-2024-2544735Наблюдать
An issue in the imlib_load_image_with_error_return function of imlib2 v1.9.1 allows attackers to cause a heap buffer overflow via parsing a
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %enlightenment · imlib29 февр. 2024 г.
- CVE-2024-2545035Наблюдать
imlib2 v1.9.1 was discovered to mishandle memory allocation in the function init_imlib_fonts().
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %enlightenment · imlib29 февр. 2024 г.
- CVE-2022-3770633Наблюдать
enlightenment_sys in Enlightenment before 0.25.4 allows local users to gain privileges because it is setuid root, and the system library fun
ВысокаяCVSS 7,8Готовый эксплойтEPSS 6 %enlightenment · enlightenment25 дек. 2022 г.
- CVE-2016-399433Наблюдать
The GIF loader in imlib2 before 1.4.9 allows remote attackers to cause a denial of service (application crash) or obtain sensitive informati
ВысокаяCVSS 8,2Эксплойта нетEPSS 2 %debian · debian linux13 мая 2016 г.
- CVE-2004-082732Наблюдать
Multiple buffer overflows in the ImageMagick graphics library 5.x before 5.4.4, and 6.x before 6.0.6.2, allow remote attackers to cause a de
ВысокаяCVSS 7,5Эксплойта нетEPSS 6 %imagemagick · imagemagick16 сент. 2004 г.
- CVE-2018-2016732Наблюдать
Terminology before 1.3.1 allows Remote Code Execution because popmedia is mishandled, as demonstrated by an unsafe "cat README.md" command w
ВысокаяCVSS 7,8Эксплойта нетEPSS 3 %enlightenment · terminology17 дек. 2018 г.
- CVE-2004-081731Наблюдать
Multiple heap-based buffer overflows in the imlib BMP image handler allow remote attackers to execute arbitrary code via a crafted BMP file.
ВысокаяCVSS 7,5Эксплойта нетEPSS 5 %enlightenment · imlib31 дек. 2004 г.
- CVE-2008-518731Наблюдать
The load function in the XPM loader for imlib2 1.4.2, and possibly other versions, allows attackers to cause a denial of service (crash) and
ВысокаяCVSS 7,5Эксплойта нетEPSS 4 %enlightenment · imlib220 нояб. 2008 г.
- CVE-2014-976431Наблюдать
imlib2 before 1.4.7 allows remote attackers to cause a denial of service (segmentation fault) via a crafted GIF file.
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %debian · debian linux13 мая 2016 г.
- CVE-2014-977131Наблюдать
Integer overflow in imlib2 before 1.4.7 allows remote attackers to cause a denial of service (memory consumption or application crash) via a
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %enlightenment · imlib213 мая 2016 г.
- CVE-2014-976331Наблюдать
imlib2 before 1.4.7 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted PNM file
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %debian · debian linux13 мая 2016 г.
- CVE-2014-976231Наблюдать
imlib2 before 1.4.7 allows remote attackers to cause a denial of service (segmentation fault) via a GIF image without a colormap.
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %enlightenment · imlib213 мая 2016 г.
- CVE-2016-399331Наблюдать
Off-by-one error in the __imlib_MergeUpdate function in lib/updates.c in imlib2 before 1.4.9 allows remote attackers to cause a denial of se
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %enlightenment · imlib213 мая 2016 г.
- CVE-2011-532631Наблюдать
imlib2 before 1.4.9 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) by drawing a 2x1 ellip
ВысокаяCVSS 7,5Эксплойта нетEPSS 3 %debian · debian linux13 мая 2016 г.
- CVE-2002-016831Наблюдать
Vulnerability in Imlib before 1.9.13 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code by manipulati
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %enlightenment · imlib22 апр. 2002 г.
- CVE-2002-016731Наблюдать
Imlib before 1.9.13 sometimes uses the NetPBM package to load trusted images, which could allow attackers to cause a denial of service (cras
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %enlightenment · imlib22 апр. 2002 г.
- CVE-2015-897131Наблюдать
Terminology 0.7.0 allows remote attackers to execute arbitrary commands via escape sequences that modify the window title and then are writt
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %debian · debian linux23 янв. 2017 г.
- CVE-2014-184531Наблюдать
An unspecified setuid root helper in Enlightenment before 0.17.6 allows local users to gain privileges by leveraging failure to properly san
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %enlightenment · enlightenment27 апр. 2018 г.
- CVE-2014-184631Наблюдать
Enlightenment before 0.17.6 might allow local users to gain privileges via vectors involving the gdb method.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %enlightenment · enlightenment27 апр. 2018 г.