Skip to content
Noroxi

sane records

7 published records for vendor sane.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
85.7%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

      The weakness classes this vendor ships most often: where to look.

      CWE

      All records

      7 records
      • CVE-2003-0774
        31Monitor

        saned in sane-backends 1.0.7 and earlier does not quickly handle connection drops, which allows remote attackers to cause a denial of servic

        HighCVSS 7.5No exploitEPSS 2%

        sane · saneSep 22, 2003

      • CVE-2003-0773
        31Monitor

        saned in sane-backends 1.0.7 and earlier does not check the IP address of the connecting host during the SANE_NET_INIT RPC call, which allow

        HighCVSS 7.5No exploitEPSS 2%

        sane · saneSep 22, 2003

      • CVE-2003-0776
        31Monitor

        saned in sane-backends 1.0.7 and earlier does not properly "check the validity of the RPC numbers it gets before getting the parameters," wi

        HighCVSS 7.5No exploitEPSS 2%

        sane · saneSep 22, 2003

      • CVE-2003-0775
        21Monitor

        saned in sane-backends 1.0.7 and earlier calls malloc with an arbitrary size value if a connection is dropped before the size value has been

        MediumCVSS 5.0No exploitEPSS 2%

        sane · saneSep 22, 2003

      • CVE-2003-0777
        21Monitor

        saned in sane-backends 1.0.7 and earlier, when debug messages are enabled, does not properly handle dropped connections, which can prevent s

        MediumCVSS 5.0No exploitEPSS 2%

        sane · saneSep 22, 2003

      • CVE-2003-0778
        21Monitor

        saned in sane-backends 1.0.7 and earlier, and possibly later versions, does not properly allocate memory in certain cases, which could allow

        MediumCVSS 5.0No exploitEPSS 2%

        sane · saneSep 22, 2003

      • Certain backend drivers in the SANE library 1.0.3 and earlier, as used in frontend software such as XSane, allows local users to modify file

        LowCVSS 2.1No exploitEPSS 0%

        sane · saneDec 11, 2001