Skip to content
Noroxi

swftools records

126 published records for vendor swftools.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
4
With a fix record
1.6%
Median publish → KEV
No record has entered KEV

All records

126 records
  • SWFTools commit 772e55a was discovered to contain a heap-use-after-free via the function grow_unicode at /lib/ttf.c.

    CriticalCVSS 9.8No exploitEPSS 1%

    swftools · swftoolsSep 20, 2022

  • SWFTools commit 772e55a was discovered to contain a heap-buffer overflow via the function readU8 at /lib/ttf.c.

    CriticalCVSS 9.8No exploitEPSS 1%

    swftools · swftoolsSep 20, 2022

  • CVE-2010-1516
    38Monitor

    Multiple integer overflows in SWFTools 0.9.1 allow remote attackers to execute arbitrary code via (1) a crafted PNG file, related to the get

    CriticalCVSS 9.3No exploitEPSS 3%

    swftools · swftoolsAug 17, 2010

  • CVE-2017-8400
    36Monitor

    In SWFTools 0.9.2, an out-of-bounds write of heap data can occur in the function png_load() in lib/png.c:755.

    HighCVSS 8.8No exploitEPSS 2%

    swftools · swftoolsMay 1, 2017

  • CVE-2017-9924
    36Monitor

    In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of service via a crafted

    HighCVSS 8.8No exploitEPSS 2%

    swftools · swftoolsJul 5, 2017

  • CVE-2017-9925
    36Monitor

    In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of service via a crafted

    HighCVSS 8.8No exploitEPSS 2%

    swftools · swftoolsJul 5, 2017

  • swftools v0.9.2 was discovered to contain a strcpy parameter overlap via /home/swftools/src/swfc+0x48318a.

    CriticalCVSS 9.1No exploitEPSS 1%

    swftools · swftoolsMar 5, 2024

  • When SWFTools 0.9.2 processes a crafted file in swfcombine, it can lead to a NULL Pointer Dereference in the swf_Relocate() function in lib/

    HighCVSS 8.8No exploitEPSS 1%

    swftools · swftoolsJul 7, 2017

  • When SWFTools 0.9.2 processes a crafted file in swfextract, it can lead to a NULL Pointer Dereference in the swf_FoldSprite() function in li

    HighCVSS 8.8No exploitEPSS 1%

    swftools · swftoolsJul 7, 2017

  • When SWFTools 0.9.2 processes a crafted file in wav2swf, it can lead to a Segmentation Violation in the wav_convert2mono() function in lib/w

    HighCVSS 8.8No exploitEPSS 1%

    swftools · swftoolsJul 7, 2017

  • When SWFTools 0.9.2 processes a crafted file in png2swf, it can lead to a Segmentation Violation in the png_load() function in lib/png.c.

    HighCVSS 8.8No exploitEPSS 1%

    swftools · swftoolsJul 7, 2017

  • When SWFTools 0.9.2 processes a crafted file in swfcombine, it can lead to a NULL Pointer Dereference in the swf_DeleteFilter() function in

    HighCVSS 8.8No exploitEPSS 1%

    swftools · swftoolsJul 7, 2017

  • When SWFTools 0.9.2 processes a crafted file in swfc, it can lead to a NULL Pointer Dereference in the dict_lookup() function in lib/q.c.

    HighCVSS 8.8No exploitEPSS 1%

    swftools · swftoolsJul 7, 2017

  • CVE-2017-9927
    35Monitor

    In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have unspecified other impa

    HighCVSS 8.8No exploitEPSS 1%

    swftools · swftoolsJul 5, 2017

  • CVE-2017-9926
    35Monitor

    In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have unspecified other impa

    HighCVSS 8.8No exploitEPSS 1%

    swftools · swftoolsJul 5, 2017

  • CVE-2017-7698
    31Monitor

    A Use After Free in the pdf2swf part of swftools 0.9.2 and earlier allows remote attackers to execute arbitrary code via a malformed PDF doc

    HighCVSS 7.8No exploitEPSS 2%

    swftools · swftoolsMay 10, 2017

  • In SWFTools 0.9.2, the png_load function in lib/png.c does not check the return value of a realloc call, which allows remote attackers to ca

    HighCVSS 7.8No exploitEPSS 1%

    swftools · swftoolsNov 12, 2017

  • An issue was discovered in swftools through 20201222.

    HighCVSS 7.8No exploitEPSS 1%

    swftools · swftoolsJun 2, 2022

  • In SWFTools 0.9.2, the png_load function in lib/png.c does not properly validate an alloclen_64 multiplication of width and height values, w

    HighCVSS 7.8No exploitEPSS 1%

    swftools · swftoolsNov 12, 2017

  • The wav_convert2mono function in lib/wav.c in SWFTools 0.9.2 does not properly validate WAV data, which allows remote attackers to cause a d

    HighCVSS 7.8No exploitEPSS 1%

    swftools · swftoolsNov 12, 2017

  • An issue was discovered in swftools through 20201222.

    HighCVSS 7.8No exploitEPSS 1%

    swftools · swftoolsJun 2, 2022

  • An issue was discovered in swftools through 20201222.

    HighCVSS 7.8No exploitEPSS 1%

    swftools · swftoolsJun 2, 2022

  • An issue was discovered in swftools through 20201222 through a memory leak in the swftools when swfdump is used.

    HighCVSS 7.8No exploitEPSS 1%

    swftools · swftoolsJun 2, 2022

  • An issue was discovered in swftools through 20200710.

    HighCVSS 7.8No exploitEPSS 1%

    swftools · swftoolsSep 20, 2021

  • An issue was discovered in swftools through 20200710.

    HighCVSS 7.8No exploitEPSS 1%

    swftools · swftoolsSep 20, 2021