libpff project records
3 published records for vendor libpff project.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 0
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-125 Out-of-bounds Read1
- CWE-416 Use After Free1
- CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
3 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
31Monitor | CVE-2020-18897No exploit | An use-after-free vulnerability in the libpff_item_tree_create_node function of libyal Libpff before 20180623 allows attackers to cause a delibpff project · libpff · CWE-416 | High7.8 | — | 0.5% | Aug 19, 2021 |
22Monitor | CVE-2018-11723No exploit | The libpff_name_to_id_map_entry_read function in libpff_name_to_id_map.c in libyal libpff through 2018-04-28 allows remote attackers to causlibpff project · libpff · CWE-125 | Medium5.5 | — | 1.2% | Jun 19, 2018 |
22Monitor | CVE-2018-20348No exploit | libpff_item_tree_create_node in libpff_item_tree.c in libpff before experimental-20180714 allows attackers to cause a denial of service (inflibpff project · libpff · CWE-835 | Medium5.5 | — | 0.4% | Dec 21, 2018 |
- CVE-2020-1889731Monitor
An use-after-free vulnerability in the libpff_item_tree_create_node function of libyal Libpff before 20180623 allows attackers to cause a de
HighCVSS 7.8No exploitEPSS 1%libpff project · libpffAug 19, 2021
- CVE-2018-1172322Monitor
The libpff_name_to_id_map_entry_read function in libpff_name_to_id_map.c in libyal libpff through 2018-04-28 allows remote attackers to caus
MediumCVSS 5.5No exploitEPSS 1%libpff project · libpffJun 19, 2018
- CVE-2018-2034822Monitor
libpff_item_tree_create_node in libpff_item_tree.c in libpff before experimental-20180714 allows attackers to cause a denial of service (inf
MediumCVSS 5.5No exploitEPSS 0%libpff project · libpffDec 21, 2018