Записи pango
4 опубликованных записей вендора pango.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 50 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-189 Numeric Errors1
- CWE-434 Unrestricted Upload of File with Dangerous Type1
- CWE-59 Improper Link Resolution Before File Access ('Link Following')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
4 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2020-12828Proof of concept | An issue was discovered in AnchorFree VPN SDK before 1.3.3.218.pango · virtual private network software development kit · CWE-434 | Критическая9,8 | — | 3,3 % | 21 мая 2020 г. |
36Наблюдать | CVE-2011-0020Proof of concept | Heap-based buffer overflow in the pango_ft2_font_render_box_glyph function in pango/pangoft2-render.c in libpango in Pango 1.28.3 and earliepango · pango · CWE-119 | Высокая7,6 | — | 18,9 % | 24 янв. 2011 г. |
31Наблюдать | CVE-2020-17365Эксплойта нет | Improper directory permissions in the Hotspot Shield VPN client software for Windows 10.3.0 and earlier may allow an authorized user to potepango · hotspot shield · CWE-59 | Высокая7,8 | — | 0,4 % | 24 сент. 2020 г. |
28Наблюдать | CVE-2009-1194Эксплойта нет | Integer overflow in the pango_glyph_string_set_size function in pango/glyphstring.c in Pango before 1.24 allows context-dependent attackers pango · pango · CWE-189 | Средняя6,8 | — | 4,1 % | 11 мая 2009 г. |
- CVE-2020-1282840В плане
An issue was discovered in AnchorFree VPN SDK before 1.3.3.218.
КритическаяCVSS 9,8Proof of conceptEPSS 3 %pango · virtual private network software development kit21 мая 2020 г.
- CVE-2011-002036Наблюдать
Heap-based buffer overflow in the pango_ft2_font_render_box_glyph function in pango/pangoft2-render.c in libpango in Pango 1.28.3 and earlie
ВысокаяCVSS 7,6Proof of conceptEPSS 19 %pango · pango24 янв. 2011 г.
- CVE-2020-1736531Наблюдать
Improper directory permissions in the Hotspot Shield VPN client software for Windows 10.3.0 and earlier may allow an authorized user to pote
ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %pango · hotspot shield24 сент. 2020 г.
- CVE-2009-119428Наблюдать
Integer overflow in the pango_glyph_string_set_size function in pango/glyphstring.c in Pango before 1.24 allows context-dependent attackers
СредняяCVSS 6,8Эксплойта нетEPSS 4 %pango · pango11 мая 2009 г.