Записи lcdf
6 опубликованных записей вендора lcdf.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 0
- С записью об исправлении
- 83,3 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-401 Missing Release of Memory after Effective Lifetime1
- CWE-415 Double Free1
- CWE-416 Use After Free1
- CWE-476 NULL Pointer Dereference1
- CWE-697 Incorrect Comparison1
- CWE-787 Out-of-bounds Write1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
6 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2017-1000421Эксплойта нет | Gifsicle gifview 1.89 and older is vulnerable to a use-after-free in the read_gif function resulting potential code executionlcdf · gifsicle · CWE-416 | Критическая9,8 | — | 2,7 % | 2 янв. 2018 г. |
32Наблюдать | CVE-2017-18120Эксплойта нет | A double-free bug in the read_gif function in gifread.c in gifsicle 1.90 allows a remote attacker to cause a denial-of-service attack or unslcdf · gifsicle · CWE-415 | Высокая7,8 | — | 1,8 % | 2 февр. 2018 г. |
31Наблюдать | CVE-2023-46009Эксплойта нет | gifsicle-1.94 was found to have a floating point exception (FPE) vulnerability via resize_stream at src/xform.c.lcdf · gifsicle · CWE-697 | Высокая7,8 | — | 0,3 % | 18 окт. 2023 г. |
31Наблюдать | CVE-2023-36193Эксплойта нет | Gifsicle v1.9.3 was discovered to contain a heap buffer overflow via the ambiguity_error component at /src/clp.c.lcdf · gifsicle · CWE-787 | Высокая7,8 | — | 0,3 % | 22 июн. 2023 г. |
30Наблюдать | CVE-2020-19752Эксплойта нет | The find_color_or_error function in gifsicle 1.92 contains a NULL pointer dereference.lcdf · gifsicle · CWE-476 | Высокая7,5 | — | 1,6 % | 7 сент. 2021 г. |
22Наблюдать | CVE-2023-44821Эксплойта нет | Gifsicle through 1.94, if deployed in a way that allows untrusted input to affect Gif_Realloc calls, might allow a denial of service (memorylcdf · gifsicle · CWE-401 | Средняя5,5 | — | 0,3 % | 9 окт. 2023 г. |
- CVE-2017-100042140В плане
Gifsicle gifview 1.89 and older is vulnerable to a use-after-free in the read_gif function resulting potential code execution
КритическаяCVSS 9,8Эксплойта нетEPSS 3 %lcdf · gifsicle2 янв. 2018 г.
- CVE-2017-1812032Наблюдать
A double-free bug in the read_gif function in gifread.c in gifsicle 1.90 allows a remote attacker to cause a denial-of-service attack or uns
ВысокаяCVSS 7,8Эксплойта нетEPSS 2 %lcdf · gifsicle2 февр. 2018 г.
- CVE-2023-4600931Наблюдать
gifsicle-1.94 was found to have a floating point exception (FPE) vulnerability via resize_stream at src/xform.c.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %lcdf · gifsicle18 окт. 2023 г.
- CVE-2023-3619331Наблюдать
Gifsicle v1.9.3 was discovered to contain a heap buffer overflow via the ambiguity_error component at /src/clp.c.
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %lcdf · gifsicle22 июн. 2023 г.
- CVE-2020-1975230Наблюдать
The find_color_or_error function in gifsicle 1.92 contains a NULL pointer dereference.
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %lcdf · gifsicle7 сент. 2021 г.
- CVE-2023-4482122Наблюдать
Gifsicle through 1.94, if deployed in a way that allows untrusted input to affect Gif_Realloc calls, might allow a denial of service (memory
СредняяCVSS 5,5Эксплойта нетEPSS 0 %lcdf · gifsicle9 окт. 2023 г.