dcraw project kayıtları
dcraw project üreticisine ait 7 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-125 Out-of-bounds Read2
- CWE-189 Numeric Errors1
- CWE-20 Improper Input Validation1
- CWE-787 Out-of-bounds Write1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
7 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
36İzleyin | CVE-2018-19655İstismar yok | A stack-based buffer overflow in the find_green() function of dcraw through 9.28, as used in ufraw-batch and many other products, may allow dcraw project · dcraw · CWE-787 | Yüksek8,8 | — | %2,9 | 29 Kas 2018 |
31İzleyin | CVE-2021-3624İstismar yok | There is an integer overflow vulnerability in dcraw.dcraw project · dcraw · CWE-20 | Yüksek7,8 | — | %0,9 | 18 Nis 2022 |
28İzleyin | CVE-2018-19565İstismar yok | A buffer over-read in crop_masked_pixels in dcraw through 9.28 could be used by attackers able to supply malicious files to crash an applicadcraw project · dcraw · CWE-125 | Yüksek7,1 | — | %1,1 | 26 Kas 2018 |
28İzleyin | CVE-2018-19566İstismar yok | A heap buffer over-read in parse_tiff_ifd in dcraw through 9.28 could be used by attackers able to supply malicious files to crash an applicdcraw project · dcraw · CWE-125 | Yüksek7,1 | — | %1,1 | 26 Kas 2018 |
22İzleyin | CVE-2018-19567İstismar yok | A floating point exception in parse_tiff_ifd in dcraw through 9.28 could be used by attackers able to supply malicious files to crash an appdcraw project · dcraw · CWE-119 | Orta5,5 | — | %0,9 | 26 Kas 2018 |
22İzleyin | CVE-2018-19568İstismar yok | A floating point exception in kodak_radc_load_raw in dcraw through 9.28 could be used by attackers able to supply malicious files to crash adcraw project · dcraw · CWE-119 | Orta5,5 | — | %0,9 | 26 Kas 2018 |
19İzleyin | CVE-2015-3885İstismar yok | Integer overflow in the ljpeg_start function in dcraw 7.00 and earlier allows remote attackers to cause a denial of service (crash) via a crdcraw project · dcraw · CWE-189 | Orta4,3 | — | %5,4 | 19 May 2015 |
- CVE-2018-1965536İzleyin
A stack-based buffer overflow in the find_green() function of dcraw through 9.28, as used in ufraw-batch and many other products, may allow
YüksekCVSS 8,8İstismar yokEPSS %3dcraw project · dcraw29 Kas 2018
- CVE-2021-362431İzleyin
There is an integer overflow vulnerability in dcraw.
YüksekCVSS 7,8İstismar yokEPSS %1dcraw project · dcraw18 Nis 2022
- CVE-2018-1956528İzleyin
A buffer over-read in crop_masked_pixels in dcraw through 9.28 could be used by attackers able to supply malicious files to crash an applica
YüksekCVSS 7,1İstismar yokEPSS %1dcraw project · dcraw26 Kas 2018
- CVE-2018-1956628İzleyin
A heap buffer over-read in parse_tiff_ifd in dcraw through 9.28 could be used by attackers able to supply malicious files to crash an applic
YüksekCVSS 7,1İstismar yokEPSS %1dcraw project · dcraw26 Kas 2018
- CVE-2018-1956722İzleyin
A floating point exception in parse_tiff_ifd in dcraw through 9.28 could be used by attackers able to supply malicious files to crash an app
OrtaCVSS 5,5İstismar yokEPSS %1dcraw project · dcraw26 Kas 2018
- CVE-2018-1956822İzleyin
A floating point exception in kodak_radc_load_raw in dcraw through 9.28 could be used by attackers able to supply malicious files to crash a
OrtaCVSS 5,5İstismar yokEPSS %1dcraw project · dcraw26 Kas 2018
- CVE-2015-388519İzleyin
Integer overflow in the ljpeg_start function in dcraw 7.00 and earlier allows remote attackers to cause a denial of service (crash) via a cr
OrtaCVSS 4,3İstismar yokEPSS %5dcraw project · dcraw19 May 2015