Skip to content
Noroxi

sil records

28 published records for vendor sil.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
3
With a fix record
100%
Median publish → KEV
No record has entered KEV

All records

28 records
  • A number of security vulnerabilities in the Graphite 2 library including out-of-bounds reads, buffer overflow reads and writes, and the use

    CriticalCVSS 9.8No exploitEPSS 5%

    mozilla · firefoxJun 11, 2018

  • CVE-2016-1522
    37Monitor

    Code.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.6.1, does not consider re

    HighCVSS 8.8No exploitEPSS 8%

    mozilla · firefoxFeb 12, 2016

  • CVE-2016-2799
    36Monitor

    Heap-based buffer overflow in the graphite2::Slot::setAttr function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and F

    HighCVSS 8.8No exploitEPSS 5%

    mozilla · firefoxMar 13, 2016

  • CVE-2016-1521
    36Monitor

    The directrun function in directmachine.cpp in Libgraphite in Graphite 2 1.2.4, as used in Mozilla Firefox before 43.0 and Firefox ESR 38.x

    HighCVSS 8.8No exploitEPSS 4%

    mozilla · firefoxFeb 12, 2016

  • CVE-2016-2796
    36Monitor

    Heap-based buffer overflow in the graphite2::vm::Machine::Code::Code function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before

    HighCVSS 8.8No exploitEPSS 4%

    mozilla · firefoxMar 13, 2016

  • CVE-2016-2794
    36Monitor

    The graphite2::TtfUtil::CmapSubtable12NextCodepoint function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox

    HighCVSS 8.8No exploitEPSS 3%

    mozilla · firefoxMar 13, 2016

  • CVE-2016-1977
    36Monitor

    The Machine::Code::decoder::analysis::set_ref function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38

    HighCVSS 8.8No exploitEPSS 3%

    mozilla · firefoxMar 13, 2016

  • CVE-2016-2797
    36Monitor

    The graphite2::TtfUtil::CmapSubtable12Lookup function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.

    HighCVSS 8.8No exploitEPSS 3%

    mozilla · firefoxMar 13, 2016

  • CVE-2016-2793
    36Monitor

    CachedCmap.cpp in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers

    HighCVSS 8.8No exploitEPSS 3%

    mozilla · firefoxMar 13, 2016

  • CVE-2017-5436
    36Monitor

    An out-of-bounds write in the Graphite 2 library triggered with a maliciously crafted Graphite font.

    HighCVSS 8.8No exploitEPSS 2%

    debian · debian linuxJun 11, 2018

  • CVE-2016-2798
    36Monitor

    The graphite2::GlyphCache::Loader::Loader function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x b

    HighCVSS 8.8No exploitEPSS 2%

    mozilla · firefoxMar 13, 2016

  • CVE-2016-2790
    36Monitor

    The graphite2::TtfUtil::GetTableInfo function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before

    HighCVSS 8.8No exploitEPSS 2%

    mozilla · firefoxMar 13, 2016

  • CVE-2016-2791
    36Monitor

    The graphite2::GlyphCache::glyph function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.

    HighCVSS 8.8No exploitEPSS 2%

    mozilla · firefoxMar 13, 2016

  • CVE-2016-2792
    36Monitor

    The graphite2::Slot::getAttr function in Slot.cpp in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x be

    HighCVSS 8.8No exploitEPSS 2%

    mozilla · firefoxMar 13, 2016

  • CVE-2016-2795
    36Monitor

    The graphite2::FileFace::get_table_fn function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x befor

    HighCVSS 8.8No exploitEPSS 2%

    mozilla · firefoxMar 13, 2016

  • CVE-2016-2800
    36Monitor

    The graphite2::Slot::getAttr function in Slot.cpp in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x be

    HighCVSS 8.8No exploitEPSS 2%

    mozilla · firefoxMar 13, 2016

  • CVE-2016-2801
    36Monitor

    The graphite2::TtfUtil::CmapSubtable12Lookup function in TtfUtil.cpp in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and

    HighCVSS 8.8No exploitEPSS 2%

    mozilla · firefoxMar 13, 2016

  • CVE-2016-2802
    36Monitor

    The graphite2::TtfUtil::CmapSubtable4NextCodepoint function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox E

    HighCVSS 8.8No exploitEPSS 2%

    mozilla · firefoxMar 13, 2016

  • CVE-2018-7999
    36Monitor

    In libgraphite2 in graphite2 1.3.11, a NULL pointer dereference vulnerability was found in Segment.cpp during a dumbRendering operation, whi

    HighCVSS 8.8No exploitEPSS 2%

    sil · graphite2Mar 9, 2018

  • CVE-2017-7774
    36Monitor

    Out-of-bounds read in Graphite2 Library in Firefox before 54 in graphite2::Silf::readGraphite function.

    CriticalCVSS 9.1No exploitEPSS 1%

    sil · graphite2Apr 15, 2019

  • CVE-2016-1969
    35Monitor

    The setAttr function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.6.1, allows remote at

    HighCVSS 8.8No exploitEPSS 2%

    mozilla · firefoxMar 13, 2016

  • CVE-2017-7772
    35Monitor

    Heap-based Buffer Overflow in Graphite2 library in Firefox before 54 in lz4::decompress function.

    HighCVSS 8.8No exploitEPSS 1%

    mozilla · firefoxApr 12, 2019

  • CVE-2017-7773
    35Monitor

    Heap-based Buffer Overflow write in Graphite2 library in Firefox before 54 in lz4::decompress src/Decompressor.

    HighCVSS 8.8No exploitEPSS 1%

    mozilla · firefoxApr 15, 2019

  • CVE-2017-7777
    35Monitor

    Use of uninitialized memory in Graphite2 library in Firefox before 54 in graphite2::GlyphCache::Loader::read_glyph function.

    HighCVSS 8.8No exploitEPSS 1%

    mozilla · firefoxApr 15, 2019

  • CVE-2017-7776
    33Monitor

    Heap-based Buffer Overflow read in Graphite2 library in Firefox before 54 in graphite2::Silf::getClassGlyph.

    HighCVSS 8.1No exploitEPSS 3%

    sil · graphite2Apr 15, 2019