Записи swftools
126 опубликованных записей вендора swftools.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 4
- С записью об исправлении
- 1,6 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-787 Out-of-bounds Write40
- CWE-476 NULL Pointer Dereference35
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer14
- CWE-125 Out-of-bounds Read10
- CWE-416 Use After Free9
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')3
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
126 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
39Наблюдать | CVE-2022-40009Эксплойта нет | SWFTools commit 772e55a was discovered to contain a heap-use-after-free via the function grow_unicode at /lib/ttf.c.swftools · swftools · CWE-416 | Критическая9,8 | — | 1,2 % | 20 сент. 2022 г. |
39Наблюдать | CVE-2022-40008Эксплойта нет | SWFTools commit 772e55a was discovered to contain a heap-buffer overflow via the function readU8 at /lib/ttf.c.swftools · swftools · CWE-787 | Критическая9,8 | — | 1,2 % | 20 сент. 2022 г. |
38Наблюдать | CVE-2010-1516Эксплойта нет | Multiple integer overflows in SWFTools 0.9.1 allow remote attackers to execute arbitrary code via (1) a crafted PNG file, related to the getswftools · swftools · CWE-189 | Критическая9,3 | — | 3,5 % | 17 авг. 2010 г. |
36Наблюдать | CVE-2017-8400Эксплойта нет | In SWFTools 0.9.2, an out-of-bounds write of heap data can occur in the function png_load() in lib/png.c:755.swftools · swftools · CWE-787 | Высокая8,8 | — | 2,1 % | 1 мая 2017 г. |
36Наблюдать | CVE-2017-9924Эксплойта нет | In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of service via a craftedswftools · swftools · CWE-119 | Высокая8,8 | — | 2,0 % | 5 июл. 2017 г. |
36Наблюдать | CVE-2017-9925Эксплойта нет | In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of service via a craftedswftools · swftools · CWE-119 | Высокая8,8 | — | 2,0 % | 5 июл. 2017 г. |
36Наблюдать | CVE-2024-26339Эксплойта нет | swftools v0.9.2 was discovered to contain a strcpy parameter overlap via /home/swftools/src/swfc+0x48318a.swftools · swftools | Критическая9,1 | — | 0,8 % | 5 мар. 2024 г. |
35Наблюдать | CVE-2017-11101Эксплойта нет | When SWFTools 0.9.2 processes a crafted file in swfcombine, it can lead to a NULL Pointer Dereference in the swf_Relocate() function in lib/swftools · swftools · CWE-476 | Высокая8,8 | — | 1,4 % | 7 июл. 2017 г. |
35Наблюдать | CVE-2017-11100Эксплойта нет | When SWFTools 0.9.2 processes a crafted file in swfextract, it can lead to a NULL Pointer Dereference in the swf_FoldSprite() function in liswftools · swftools · CWE-476 | Высокая8,8 | — | 1,4 % | 7 июл. 2017 г. |
35Наблюдать | CVE-2017-11099Эксплойта нет | When SWFTools 0.9.2 processes a crafted file in wav2swf, it can lead to a Segmentation Violation in the wav_convert2mono() function in lib/wswftools · swftools · CWE-20 | Высокая8,8 | — | 1,4 % | 7 июл. 2017 г. |
35Наблюдать | CVE-2017-11098Эксплойта нет | When SWFTools 0.9.2 processes a crafted file in png2swf, it can lead to a Segmentation Violation in the png_load() function in lib/png.c.swftools · swftools · CWE-20 | Высокая8,8 | — | 1,4 % | 7 июл. 2017 г. |
35Наблюдать | CVE-2017-11096Эксплойта нет | When SWFTools 0.9.2 processes a crafted file in swfcombine, it can lead to a NULL Pointer Dereference in the swf_DeleteFilter() function in swftools · swftools · CWE-476 | Высокая8,8 | — | 1,4 % | 7 июл. 2017 г. |
35Наблюдать | CVE-2017-11097Эксплойта нет | When SWFTools 0.9.2 processes a crafted file in swfc, it can lead to a NULL Pointer Dereference in the dict_lookup() function in lib/q.c.swftools · swftools · CWE-476 | Высокая8,8 | — | 1,4 % | 7 июл. 2017 г. |
35Наблюдать | CVE-2017-9927Эксплойта нет | In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have unspecified other impaswftools · swftools · CWE-119 | Высокая8,8 | — | 1,3 % | 5 июл. 2017 г. |
35Наблюдать | CVE-2017-9926Эксплойта нет | In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have unspecified other impaswftools · swftools · CWE-119 | Высокая8,8 | — | 1,3 % | 5 июл. 2017 г. |
31Наблюдать | CVE-2017-7698Эксплойта нет | A Use After Free in the pdf2swf part of swftools 0.9.2 and earlier allows remote attackers to execute arbitrary code via a malformed PDF docswftools · swftools · CWE-416 | Высокая7,8 | — | 1,7 % | 10 мая 2017 г. |
31Наблюдать | CVE-2017-16796Эксплойта нет | In SWFTools 0.9.2, the png_load function in lib/png.c does not check the return value of a realloc call, which allows remote attackers to caswftools · swftools · CWE-119 | Высокая7,8 | — | 1,3 % | 12 нояб. 2017 г. |
31Наблюдать | CVE-2021-42204Эксплойта нет | An issue was discovered in swftools through 20201222.swftools · swftools · CWE-787 | Высокая7,8 | — | 1,3 % | 2 июн. 2022 г. |
31Наблюдать | CVE-2017-16797Эксплойта нет | In SWFTools 0.9.2, the png_load function in lib/png.c does not properly validate an alloclen_64 multiplication of width and height values, wswftools · swftools · CWE-190 | Высокая7,8 | — | 1,2 % | 12 нояб. 2017 г. |
31Наблюдать | CVE-2017-16793Эксплойта нет | The wav_convert2mono function in lib/wav.c in SWFTools 0.9.2 does not properly validate WAV data, which allows remote attackers to cause a dswftools · swftools · CWE-119 | Высокая7,8 | — | 1,2 % | 12 нояб. 2017 г. |
31Наблюдать | CVE-2021-42203Эксплойта нет | An issue was discovered in swftools through 20201222.swftools · swftools · CWE-416 | Высокая7,8 | — | 1,2 % | 2 июн. 2022 г. |
31Наблюдать | CVE-2021-42201Эксплойта нет | An issue was discovered in swftools through 20201222.swftools · swftools · CWE-787 | Высокая7,8 | — | 1,1 % | 2 июн. 2022 г. |
31Наблюдать | CVE-2021-42197Эксплойта нет | An issue was discovered in swftools through 20201222 through a memory leak in the swftools when swfdump is used.swftools · swftools · CWE-401 | Высокая7,8 | — | 1,1 % | 2 июн. 2022 г. |
31Наблюдать | CVE-2021-39582Эксплойта нет | An issue was discovered in swftools through 20200710.swftools · swftools · CWE-787 | Высокая7,8 | — | 1,1 % | 20 сент. 2021 г. |
31Наблюдать | CVE-2021-39579Эксплойта нет | An issue was discovered in swftools through 20200710.swftools · swftools · CWE-787 | Высокая7,8 | — | 1,1 % | 20 сент. 2021 г. |
- CVE-2022-4000939Наблюдать
SWFTools commit 772e55a was discovered to contain a heap-use-after-free via the function grow_unicode at /lib/ttf.c.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %swftools · swftools20 сент. 2022 г.
- CVE-2022-4000839Наблюдать
SWFTools commit 772e55a was discovered to contain a heap-buffer overflow via the function readU8 at /lib/ttf.c.
КритическаяCVSS 9,8Эксплойта нетEPSS 1 %swftools · swftools20 сент. 2022 г.
- CVE-2010-151638Наблюдать
Multiple integer overflows in SWFTools 0.9.1 allow remote attackers to execute arbitrary code via (1) a crafted PNG file, related to the get
КритическаяCVSS 9,3Эксплойта нетEPSS 3 %swftools · swftools17 авг. 2010 г.
- CVE-2017-840036Наблюдать
In SWFTools 0.9.2, an out-of-bounds write of heap data can occur in the function png_load() in lib/png.c:755.
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %swftools · swftools1 мая 2017 г.
- CVE-2017-992436Наблюдать
In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of service via a crafted
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %swftools · swftools5 июл. 2017 г.
- CVE-2017-992536Наблюдать
In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of service via a crafted
ВысокаяCVSS 8,8Эксплойта нетEPSS 2 %swftools · swftools5 июл. 2017 г.
- CVE-2024-2633936Наблюдать
swftools v0.9.2 was discovered to contain a strcpy parameter overlap via /home/swftools/src/swfc+0x48318a.
КритическаяCVSS 9,1Эксплойта нетEPSS 1 %swftools · swftools5 мар. 2024 г.
- CVE-2017-1110135Наблюдать
When SWFTools 0.9.2 processes a crafted file in swfcombine, it can lead to a NULL Pointer Dereference in the swf_Relocate() function in lib/
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %swftools · swftools7 июл. 2017 г.
- CVE-2017-1110035Наблюдать
When SWFTools 0.9.2 processes a crafted file in swfextract, it can lead to a NULL Pointer Dereference in the swf_FoldSprite() function in li
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %swftools · swftools7 июл. 2017 г.
- CVE-2017-1109935Наблюдать
When SWFTools 0.9.2 processes a crafted file in wav2swf, it can lead to a Segmentation Violation in the wav_convert2mono() function in lib/w
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %swftools · swftools7 июл. 2017 г.
- CVE-2017-1109835Наблюдать
When SWFTools 0.9.2 processes a crafted file in png2swf, it can lead to a Segmentation Violation in the png_load() function in lib/png.c.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %swftools · swftools7 июл. 2017 г.
- CVE-2017-1109635Наблюдать
When SWFTools 0.9.2 processes a crafted file in swfcombine, it can lead to a NULL Pointer Dereference in the swf_DeleteFilter() function in
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %swftools · swftools7 июл. 2017 г.
- CVE-2017-1109735Наблюдать
When SWFTools 0.9.2 processes a crafted file in swfc, it can lead to a NULL Pointer Dereference in the dict_lookup() function in lib/q.c.
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %swftools · swftools7 июл. 2017 г.
- CVE-2017-992735Наблюдать
In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have unspecified other impa
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %swftools · swftools5 июл. 2017 г.
- CVE-2017-992635Наблюдать
In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have unspecified other impa
ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %swftools · swftools5 июл. 2017 г.
- CVE-2017-769831Наблюдать
A Use After Free in the pdf2swf part of swftools 0.9.2 and earlier allows remote attackers to execute arbitrary code via a malformed PDF doc
ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %swftools · swftools10 мая 2017 г.
- CVE-2017-1679631Наблюдать
In SWFTools 0.9.2, the png_load function in lib/png.c does not check the return value of a realloc call, which allows remote attackers to ca
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %swftools · swftools12 нояб. 2017 г.
- CVE-2021-4220431Наблюдать
An issue was discovered in swftools through 20201222.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %swftools · swftools2 июн. 2022 г.
- CVE-2017-1679731Наблюдать
In SWFTools 0.9.2, the png_load function in lib/png.c does not properly validate an alloclen_64 multiplication of width and height values, w
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %swftools · swftools12 нояб. 2017 г.
- CVE-2017-1679331Наблюдать
The wav_convert2mono function in lib/wav.c in SWFTools 0.9.2 does not properly validate WAV data, which allows remote attackers to cause a d
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %swftools · swftools12 нояб. 2017 г.
- CVE-2021-4220331Наблюдать
An issue was discovered in swftools through 20201222.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %swftools · swftools2 июн. 2022 г.
- CVE-2021-4220131Наблюдать
An issue was discovered in swftools through 20201222.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %swftools · swftools2 июн. 2022 г.
- CVE-2021-4219731Наблюдать
An issue was discovered in swftools through 20201222 through a memory leak in the swftools when swfdump is used.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %swftools · swftools2 июн. 2022 г.
- CVE-2021-3958231Наблюдать
An issue was discovered in swftools through 20200710.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %swftools · swftools20 сент. 2021 г.
- CVE-2021-3957931Наблюдать
An issue was discovered in swftools through 20200710.
ВысокаяCVSS 7,8Эксплойта нетEPSS 1 %swftools · swftools20 сент. 2021 г.