Записи t1lib
8 опубликованных записей вендора t1lib.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 5
- С записью об исправлении
- 100 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer4
- CWE-189 Numeric Errors2
- CWE-20 Improper Input Validation1
- CWE-399 Resource Management Errors1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
8 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
36Наблюдать | CVE-2007-4033Proof of concept | Buffer overflow in the intT1_EnvGetCompletePath function in lib/t1lib/t1env.c in t1lib 5.1.1 allows context-dependent attackers to execute at1lib · t1lib · CWE-119 | Высокая7,5 | — | 18,7 % | 27 июл. 2007 г. |
34Наблюдать | CVE-2010-2642Эксплойта нет | Heap-based buffer overflow in the AFM font parser in the dvi-backend component in Evince 2.32 and earlier, teTeX 3.0, t1lib 5.1.2, and possit1lib · t1lib · CWE-119 | Высокая7,6 | — | 14,3 % | 7 янв. 2011 г. |
31Наблюдать | CVE-2011-0764Эксплойта нет | t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, uses an invalid pointer in conjunction with a dereferenct1lib · t1lib · CWE-20 | Средняя6,8 | — | 13,1 % | 31 мар. 2011 г. |
28Наблюдать | CVE-2011-0433Эксплойта нет | Heap-based buffer overflow in the linetoken function in afmparse.c in t1lib, as used in teTeX 3.0.x, GNOME evince, and possibly other producgnome · evince · CWE-119 | Средняя6,8 | — | 4,2 % | 19 нояб. 2012 г. |
28Наблюдать | CVE-2011-5244Эксплойта нет | Multiple off-by-one errors in the (1) token and (2) linetoken functions in backend/dvi/mdvi-lib/afmparse.c in t1lib, as used in teTeX 3.0.x,t1lib · t1lib · CWE-189 | Средняя6,8 | — | 3,4 % | 19 нояб. 2012 г. |
20Наблюдать | CVE-2011-1552Эксплойта нет | t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, reads from invalid memory locations, which allows remotet1lib · t1lib · CWE-119 | Средняя4,3 | — | 10,4 % | 31 мар. 2011 г. |
19Наблюдать | CVE-2011-1553Эксплойта нет | Use-after-free vulnerability in t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, allows remote attackers t1lib · t1lib · CWE-399 | Средняя4,3 | — | 5,4 % | 31 мар. 2011 г. |
19Наблюдать | CVE-2011-1554Эксплойта нет | Off-by-one error in t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, allows remote attackers to cause a dt1lib · t1lib · CWE-189 | Средняя4,3 | — | 5,4 % | 31 мар. 2011 г. |
- CVE-2007-403336Наблюдать
Buffer overflow in the intT1_EnvGetCompletePath function in lib/t1lib/t1env.c in t1lib 5.1.1 allows context-dependent attackers to execute a
ВысокаяCVSS 7,5Proof of conceptEPSS 19 %t1lib · t1lib27 июл. 2007 г.
- CVE-2010-264234Наблюдать
Heap-based buffer overflow in the AFM font parser in the dvi-backend component in Evince 2.32 and earlier, teTeX 3.0, t1lib 5.1.2, and possi
ВысокаяCVSS 7,6Эксплойта нетEPSS 14 %t1lib · t1lib7 янв. 2011 г.
- CVE-2011-076431Наблюдать
t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, uses an invalid pointer in conjunction with a dereferenc
СредняяCVSS 6,8Эксплойта нетEPSS 13 %t1lib · t1lib31 мар. 2011 г.
- CVE-2011-043328Наблюдать
Heap-based buffer overflow in the linetoken function in afmparse.c in t1lib, as used in teTeX 3.0.x, GNOME evince, and possibly other produc
СредняяCVSS 6,8Эксплойта нетEPSS 4 %gnome · evince19 нояб. 2012 г.
- CVE-2011-524428Наблюдать
Multiple off-by-one errors in the (1) token and (2) linetoken functions in backend/dvi/mdvi-lib/afmparse.c in t1lib, as used in teTeX 3.0.x,
СредняяCVSS 6,8Эксплойта нетEPSS 3 %t1lib · t1lib19 нояб. 2012 г.
- CVE-2011-155220Наблюдать
t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, reads from invalid memory locations, which allows remote
СредняяCVSS 4,3Эксплойта нетEPSS 10 %t1lib · t1lib31 мар. 2011 г.
- CVE-2011-155319Наблюдать
Use-after-free vulnerability in t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, allows remote attackers
СредняяCVSS 4,3Эксплойта нетEPSS 5 %t1lib · t1lib31 мар. 2011 г.
- CVE-2011-155419Наблюдать
Off-by-one error in t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, allows remote attackers to cause a d
СредняяCVSS 4,3Эксплойта нетEPSS 5 %t1lib · t1lib31 мар. 2011 г.