Записи digia
9 опубликованных записей вендора digia.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 77,8 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer3
- CWE-20 Improper Input Validation3
- CWE-189 Numeric Errors2
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
9 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
31Наблюдать | CVE-2010-1766Эксплойта нет | Off-by-one error in the WebSocketHandshake::readServerHandshake function in websockets/WebSocketHandshake.cpp in WebCore in WebKit before r5webkit · webkit · CWE-189 | Высокая7,5 | — | 2,3 % | 22 июл. 2010 г. |
30Наблюдать | CVE-2015-1860Эксплойта нет | Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers tqt · qt · CWE-119 | Средняя6,8 | — | 8,7 % | 12 мая 2015 г. |
29Наблюдать | CVE-2015-1858Эксплойта нет | Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers tqt · qt · CWE-119 | Средняя6,8 | — | 7,2 % | 12 мая 2015 г. |
29Наблюдать | CVE-2015-1859Эксплойта нет | Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remqt · qt · CWE-119 | Средняя6,8 | — | 7,1 % | 12 мая 2015 г. |
23Наблюдать | CVE-2010-2621Proof of concept | The QSslSocketBackendPrivate::transmit function in src_network_ssl_qsslsocket_openssl.cpp in Qt 4.6.3 and earlier allows remote attackers toqt · qt · CWE-20 | Средняя5,0 | — | 10,5 % | 2 июл. 2010 г. |
22Наблюдать | CVE-2015-0295Эксплойта нет | The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote atfedoraproject · fedora · CWE-189 | Средняя5,0 | — | 6,3 % | 25 мар. 2015 г. |
21Наблюдать | CVE-2013-4549Эксплойта нет | QXmlSimpleReader in Qt before 5.2 allows context-dependent attackers to cause a denial of service (memory consumption) via an XML Entity Expqt · qt · CWE-20 | Средняя5,0 | — | 3,1 % | 23 дек. 2013 г. |
18Наблюдать | CVE-2012-5624Эксплойта нет | The XMLHttpRequest object in Qt before 4.8.4 enables http redirection to the file scheme, which allows man-in-the-middle attackers to force qt · qt · CWE-200 | Средняя4,3 | — | 1,9 % | 24 февр. 2013 г. |
17Наблюдать | CVE-2010-5076Эксплойта нет | QSslSocket in Qt before 4.7.0-rc1 recognizes a wildcard IP address in the subject's Common Name field of an X.509 certificate, which might aqt · qt · CWE-20 | Средняя4,3 | — | 1,4 % | 29 июн. 2012 г. |
- CVE-2010-176631Наблюдать
Off-by-one error in the WebSocketHandshake::readServerHandshake function in websockets/WebSocketHandshake.cpp in WebCore in WebKit before r5
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %webkit · webkit22 июл. 2010 г.
- CVE-2015-186030Наблюдать
Multiple buffer overflows in gui/image/qgifhandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers t
СредняяCVSS 6,8Эксплойта нетEPSS 9 %qt · qt12 мая 2015 г.
- CVE-2015-185829Наблюдать
Multiple buffer overflows in gui/image/qbmphandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow remote attackers t
СредняяCVSS 6,8Эксплойта нетEPSS 7 %qt · qt12 мая 2015 г.
- CVE-2015-185929Наблюдать
Multiple buffer overflows in plugins/imageformats/ico/qicohandler.cpp in the QtBase module in Qt before 4.8.7 and 5.x before 5.4.2 allow rem
СредняяCVSS 6,8Эксплойта нетEPSS 7 %qt · qt12 мая 2015 г.
- CVE-2010-262123Наблюдать
The QSslSocketBackendPrivate::transmit function in src_network_ssl_qsslsocket_openssl.cpp in Qt 4.6.3 and earlier allows remote attackers to
СредняяCVSS 5,0Proof of conceptEPSS 11 %qt · qt2 июл. 2010 г.
- CVE-2015-029522Наблюдать
The BMP decoder in QtGui in QT before 5.5 does not properly calculate the masks used to extract the color components, which allows remote at
СредняяCVSS 5,0Эксплойта нетEPSS 6 %fedoraproject · fedora25 мар. 2015 г.
- CVE-2013-454921Наблюдать
QXmlSimpleReader in Qt before 5.2 allows context-dependent attackers to cause a denial of service (memory consumption) via an XML Entity Exp
СредняяCVSS 5,0Эксплойта нетEPSS 3 %qt · qt23 дек. 2013 г.
- CVE-2012-562418Наблюдать
The XMLHttpRequest object in Qt before 4.8.4 enables http redirection to the file scheme, which allows man-in-the-middle attackers to force
СредняяCVSS 4,3Эксплойта нетEPSS 2 %qt · qt24 февр. 2013 г.
- CVE-2010-507617Наблюдать
QSslSocket in Qt before 4.7.0-rc1 recognizes a wildcard IP address in the subject's Common Name field of an X.509 certificate, which might a
СредняяCVSS 4,3Эксплойта нетEPSS 1 %qt · qt29 июн. 2012 г.