Записи trolltech
9 опубликованных записей вендора trolltech.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 3
- С записью об исправлении
- 55,6 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Записи по годам
Столбик: всего · тёмная часть: CISA KEV.
Повторяющиеся классы
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-264 Permissions, Privileges, and Access Controls1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
9 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
41В плане | CVE-2001-1113Эксплойта нет | Buffer overflow in TrollFTPD 1.26 and earlier allows local users to execute arbitrary code by creating a series of deeply nested directoriestrolltech · trollftpd | Критическая10,0 | — | 4,3 % | 13 авг. 2001 г. |
34Наблюдать | CVE-2004-0691Proof of concept | Heap-based buffer overflow in the BMP image format parser for the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial oftrolltech · qt | Высокая7,5 | — | 14,7 % | 28 сент. 2004 г. |
31Наблюдать | CVE-2007-4137Эксплойта нет | Off-by-one error in the QUtf8Decoder::toUnicode function in Trolltech Qt 3 allows context-dependent attackers to cause a denial of service (trolltech · qt · CWE-119 | Высокая7,5 | — | 2,3 % | 18 сент. 2007 г. |
28Наблюдать | CVE-2007-3388Эксплойта нет | Multiple format string vulnerabilities in (1) qtextedit.cpp, (2) qdatatable.cpp, (3) qsqldatabase.cpp, (4) qsqlindex.cpp, (5) qsqlrecord.cpptrolltech · qt | Средняя6,8 | — | 4,2 % | 3 авг. 2007 г. |
25Наблюдать | CVE-2002-1883Эксплойта нет | Trolltech Qt Assistant 1.0 in Trolltech Qt 3.0.3, when loaded from the Designer, opens port 7358 for interprocess communication, which allowtrolltech · qt assistant | Средняя6,4 | — | 1,6 % | 31 дек. 2002 г. |
21Наблюдать | CVE-2004-0692Эксплойта нет | The XPM parser in the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application crash) via a malformedtrolltech · qt | Средняя5,0 | — | 3,4 % | 28 сент. 2004 г. |
21Наблюдать | CVE-2004-0693Эксплойта нет | The GIF parser in the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application crash) via a malformedtrolltech · qt | Средняя5,0 | — | 2,9 % | 28 сент. 2004 г. |
18Наблюдать | CVE-2005-0627Эксплойта нет | Qt before 3.3.4 searches the BUILD_PREFIX directory, which could be world-writable, to load shared libraries regardless of the LD_LIBRARY_PAtrolltech · qt | Средняя4,6 | — | 0,4 % | 2 мая 2005 г. |
17Наблюдать | CVE-2007-5965Эксплойта нет | QSslSocket in Trolltech Qt 4.3.0 through 4.3.2 does not properly verify SSL certificates, which might make it easier for remote attackers totrolltech · qsslsocket · CWE-264 | Средняя4,3 | — | 1,3 % | 7 янв. 2008 г. |
- CVE-2001-111341В плане
Buffer overflow in TrollFTPD 1.26 and earlier allows local users to execute arbitrary code by creating a series of deeply nested directories
КритическаяCVSS 10,0Эксплойта нетEPSS 4 %trolltech · trollftpd13 авг. 2001 г.
- CVE-2004-069134Наблюдать
Heap-based buffer overflow in the BMP image format parser for the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of
ВысокаяCVSS 7,5Proof of conceptEPSS 15 %trolltech · qt28 сент. 2004 г.
- CVE-2007-413731Наблюдать
Off-by-one error in the QUtf8Decoder::toUnicode function in Trolltech Qt 3 allows context-dependent attackers to cause a denial of service (
ВысокаяCVSS 7,5Эксплойта нетEPSS 2 %trolltech · qt18 сент. 2007 г.
- CVE-2007-338828Наблюдать
Multiple format string vulnerabilities in (1) qtextedit.cpp, (2) qdatatable.cpp, (3) qsqldatabase.cpp, (4) qsqlindex.cpp, (5) qsqlrecord.cpp
СредняяCVSS 6,8Эксплойта нетEPSS 4 %trolltech · qt3 авг. 2007 г.
- CVE-2002-188325Наблюдать
Trolltech Qt Assistant 1.0 in Trolltech Qt 3.0.3, when loaded from the Designer, opens port 7358 for interprocess communication, which allow
СредняяCVSS 6,4Эксплойта нетEPSS 2 %trolltech · qt assistant31 дек. 2002 г.
- CVE-2004-069221Наблюдать
The XPM parser in the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application crash) via a malformed
СредняяCVSS 5,0Эксплойта нетEPSS 3 %trolltech · qt28 сент. 2004 г.
- CVE-2004-069321Наблюдать
The GIF parser in the QT library (qt3) before 3.3.3 allows remote attackers to cause a denial of service (application crash) via a malformed
СредняяCVSS 5,0Эксплойта нетEPSS 3 %trolltech · qt28 сент. 2004 г.
- CVE-2005-062718Наблюдать
Qt before 3.3.4 searches the BUILD_PREFIX directory, which could be world-writable, to load shared libraries regardless of the LD_LIBRARY_PA
СредняяCVSS 4,6Эксплойта нетEPSS 0 %trolltech · qt2 мая 2005 г.
- CVE-2007-596517Наблюдать
QSslSocket in Trolltech Qt 4.3.0 through 4.3.2 does not properly verify SSL certificates, which might make it easier for remote attackers to
СредняяCVSS 4,3Эксплойта нетEPSS 1 %trolltech · qsslsocket7 янв. 2008 г.