mcrypt records
5 published records for vendor mcrypt.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 3
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-134 Use of Externally-Controlled Format String1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
32Monitor | CVE-2012-4409Proof of concept | Stack-based buffer overflow in the check_file_head function in extra.c in mcrypt 2.6.8 and earlier allows user-assisted remote attackers to mcrypt · mcrypt · CWE-119 | Medium6.8 | — | 15.1% | Nov 21, 2012 |
31Monitor | CVE-2003-0031No exploit | Multiple buffer overflows in libmcrypt before 2.5.5 allow attackers to cause a denial of service (crash).mcrypt · libmcrypt | High7.5 | — | 1.7% | Jan 17, 2003 |
29Monitor | CVE-2012-4527No exploit | Stack-based buffer overflow in mcrypt 2.6.8 and earlier allows user-assisted remote attackers to cause a denial of service (crash) and possimcrypt · mcrypt · CWE-119 | Medium6.8 | — | 7.7% | Nov 21, 2012 |
28Monitor | CVE-2012-4426No exploit | Multiple format string vulnerabilities in mcrypt 2.6.8 and earlier might allow user-assisted remote attackers to cause a denial of service (mcrypt · mcrypt · CWE-134 | Medium6.8 | — | 4.7% | Nov 21, 2012 |
20Monitor | CVE-2003-0032No exploit | Memory leak in libmcrypt before 2.5.5 allows attackers to cause a denial of service (memory exhaustion) via a large number of requests to thmcrypt · libmcrypt | Medium5.0 | — | 1.5% | Jan 17, 2003 |
- CVE-2012-440932Monitor
Stack-based buffer overflow in the check_file_head function in extra.c in mcrypt 2.6.8 and earlier allows user-assisted remote attackers to
MediumCVSS 6.8Proof of conceptEPSS 15%mcrypt · mcryptNov 21, 2012
- CVE-2003-003131Monitor
Multiple buffer overflows in libmcrypt before 2.5.5 allow attackers to cause a denial of service (crash).
HighCVSS 7.5No exploitEPSS 2%mcrypt · libmcryptJan 17, 2003
- CVE-2012-452729Monitor
Stack-based buffer overflow in mcrypt 2.6.8 and earlier allows user-assisted remote attackers to cause a denial of service (crash) and possi
MediumCVSS 6.8No exploitEPSS 8%mcrypt · mcryptNov 21, 2012
- CVE-2012-442628Monitor
Multiple format string vulnerabilities in mcrypt 2.6.8 and earlier might allow user-assisted remote attackers to cause a denial of service (
MediumCVSS 6.8No exploitEPSS 5%mcrypt · mcryptNov 21, 2012
- CVE-2003-003220Monitor
Memory leak in libmcrypt before 2.5.5 allows attackers to cause a denial of service (memory exhaustion) via a large number of requests to th
MediumCVSS 5.0No exploitEPSS 2%mcrypt · libmcryptJan 17, 2003