enlightenment kayıtları
enlightenment üreticisine ait 32 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 1 · %3,1
- Pre-auth RCE
- 13
- Düzeltme kaydı olan
- %90,6
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer5
- CWE-189 Numeric Errors2
- CWE-20 Improper Input Validation2
- CWE-264 Permissions, Privileges, and Access Controls2
- CWE-787 Out-of-bounds Write2
- CWE-269 Improper Privilege Management1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
32 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
42Planlayın | CVE-2004-1025İstismar yok | Multiple heap-based buffer overflows in imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow remote attackeenlightenment · imlib | Kritik10,0 | — | %5,2 | 10 Oca 2005 |
41Planlayın | CVE-2016-4024İstismar yok | Integer overflow in imlib2 before 1.4.9 on 32-bit platforms allows remote attackers to execute arbitrary code via large dimensions in an imaenlightenment · imlib2 · CWE-119 | Kritik9,8 | — | %5,5 | 13 May 2016 |
41Planlayın | CVE-2004-1026İstismar yok | Multiple integer overflows in the image handler for imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow reenlightenment · imlib | Kritik10,0 | — | %4,9 | 10 Oca 2005 |
41Planlayın | CVE-2008-6079İstismar yok | imlib2 before 1.4.2 allows context-dependent attackers to have an unspecified impact via a crafted (1) ARGB, (2) BMP, (3) JPEG, (4) LBM, (5)enlightenment · imlib2 | Kritik10,0 | — | %2,8 | 6 Şub 2009 |
36İzleyin | CVE-2020-12761İstismar yok | modules/loaders/loader_ico.c in imlib2 1.6.0 has an integer overflow (with resultant invalid memory allocations and out-of-bounds reads) viaenlightenment · imlib2 · CWE-125 | Kritik9,1 | — | %1,6 | 9 May 2020 |
35İzleyin | CVE-2024-25448İstismar yok | An issue in the imlib_free_image_and_decache function of imlib2 v1.9.1 allows attackers to cause a heap buffer overflow via parsing a crafteenlightenment · imlib2 · CWE-787 | Yüksek8,8 | — | %0,7 | 9 Şub 2024 |
35İzleyin | CVE-2024-25447İstismar yok | An issue in the imlib_load_image_with_error_return function of imlib2 v1.9.1 allows attackers to cause a heap buffer overflow via parsing a enlightenment · imlib2 · CWE-787 | Yüksek8,8 | — | %0,7 | 9 Şub 2024 |
35İzleyin | CVE-2024-25450İstismar yok | imlib2 v1.9.1 was discovered to mishandle memory allocation in the function init_imlib_fonts().enlightenment · imlib2 · CWE-401 | Yüksek8,8 | — | %0,7 | 9 Şub 2024 |
33İzleyin | CVE-2022-37706Silahlaştırılmış | enlightenment_sys in Enlightenment before 0.25.4 allows local users to gain privileges because it is setuid root, and the system library funenlightenment · enlightenment · CWE-269 | Yüksek7,8 | — | %5,5 | 25 Ara 2022 |
33İzleyin | CVE-2016-3994İstismar yok | The GIF loader in imlib2 before 1.4.9 allows remote attackers to cause a denial of service (application crash) or obtain sensitive informatidebian · debian linux · CWE-119 | Yüksek8,2 | — | %2,4 | 13 May 2016 |
32İzleyin | CVE-2004-0827İstismar yok | Multiple buffer overflows in the ImageMagick graphics library 5.x before 5.4.4, and 6.x before 6.0.6.2, allow remote attackers to cause a deimagemagick · imagemagick | Yüksek7,5 | — | %5,5 | 16 Eyl 2004 |
32İzleyin | CVE-2018-20167İstismar yok | Terminology before 1.3.1 allows Remote Code Execution because popmedia is mishandled, as demonstrated by an unsafe "cat README.md" command wenlightenment · terminology · CWE-74 | Yüksek7,8 | — | %2,7 | 17 Ara 2018 |
31İzleyin | CVE-2004-0817İstismar yok | Multiple heap-based buffer overflows in the imlib BMP image handler allow remote attackers to execute arbitrary code via a crafted BMP file.enlightenment · imlib | Yüksek7,5 | — | %4,9 | 31 Ara 2004 |
31İzleyin | CVE-2008-5187İstismar yok | The load function in the XPM loader for imlib2 1.4.2, and possibly other versions, allows attackers to cause a denial of service (crash) andenlightenment · imlib2 · CWE-119 | Yüksek7,5 | — | %3,6 | 20 Kas 2008 |
31İzleyin | CVE-2014-9764İstismar yok | imlib2 before 1.4.7 allows remote attackers to cause a denial of service (segmentation fault) via a crafted GIF file.debian · debian linux · CWE-20 | Yüksek7,5 | — | %2,7 | 13 May 2016 |
31İzleyin | CVE-2014-9771İstismar yok | Integer overflow in imlib2 before 1.4.7 allows remote attackers to cause a denial of service (memory consumption or application crash) via aenlightenment · imlib2 | Yüksek7,5 | — | %2,7 | 13 May 2016 |
31İzleyin | CVE-2014-9763İstismar yok | imlib2 before 1.4.7 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted PNM filedebian · debian linux · CWE-189 | Yüksek7,5 | — | %2,7 | 13 May 2016 |
31İzleyin | CVE-2014-9762İstismar yok | imlib2 before 1.4.7 allows remote attackers to cause a denial of service (segmentation fault) via a GIF image without a colormap.enlightenment · imlib2 · CWE-20 | Yüksek7,5 | — | %2,7 | 13 May 2016 |
31İzleyin | CVE-2016-3993İstismar yok | Off-by-one error in the __imlib_MergeUpdate function in lib/updates.c in imlib2 before 1.4.9 allows remote attackers to cause a denial of seenlightenment · imlib2 · CWE-119 | Yüksek7,5 | — | %2,5 | 13 May 2016 |
31İzleyin | CVE-2011-5326İstismar yok | imlib2 before 1.4.9 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) by drawing a 2x1 ellipdebian · debian linux · CWE-189 | Yüksek7,5 | — | %2,5 | 13 May 2016 |
31İzleyin | CVE-2002-0168İstismar yok | Vulnerability in Imlib before 1.9.13 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code by manipulatienlightenment · imlib | Yüksek7,5 | — | %2,4 | 22 Nis 2002 |
31İzleyin | CVE-2002-0167İstismar yok | Imlib before 1.9.13 sometimes uses the NetPBM package to load trusted images, which could allow attackers to cause a denial of service (crasenlightenment · imlib | Yüksek7,5 | — | %2,4 | 22 Nis 2002 |
31İzleyin | CVE-2015-8971İstismar yok | Terminology 0.7.0 allows remote attackers to execute arbitrary commands via escape sequences that modify the window title and then are writtdebian · debian linux · CWE-77 | Yüksek7,8 | — | %1,1 | 23 Oca 2017 |
31İzleyin | CVE-2014-1845İstismar yok | An unspecified setuid root helper in Enlightenment before 0.17.6 allows local users to gain privileges by leveraging failure to properly sanenlightenment · enlightenment · CWE-264 | Yüksek7,8 | — | %0,4 | 27 Nis 2018 |
31İzleyin | CVE-2014-1846İstismar yok | Enlightenment before 0.17.6 might allow local users to gain privileges via vectors involving the gdb method.enlightenment · enlightenment · CWE-264 | Yüksek7,8 | — | %0,4 | 27 Nis 2018 |
- CVE-2004-102542Planlayın
Multiple heap-based buffer overflows in imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow remote attacke
KritikCVSS 10,0İstismar yokEPSS %5enlightenment · imlib10 Oca 2005
- CVE-2016-402441Planlayın
Integer overflow in imlib2 before 1.4.9 on 32-bit platforms allows remote attackers to execute arbitrary code via large dimensions in an ima
KritikCVSS 9,8İstismar yokEPSS %6enlightenment · imlib213 May 2016
- CVE-2004-102641Planlayın
Multiple integer overflows in the image handler for imlib 1.9.14 and earlier, which is used by gkrellm and several window managers, allow re
KritikCVSS 10,0İstismar yokEPSS %5enlightenment · imlib10 Oca 2005
- CVE-2008-607941Planlayın
imlib2 before 1.4.2 allows context-dependent attackers to have an unspecified impact via a crafted (1) ARGB, (2) BMP, (3) JPEG, (4) LBM, (5)
KritikCVSS 10,0İstismar yokEPSS %3enlightenment · imlib26 Şub 2009
- CVE-2020-1276136İzleyin
modules/loaders/loader_ico.c in imlib2 1.6.0 has an integer overflow (with resultant invalid memory allocations and out-of-bounds reads) via
KritikCVSS 9,1İstismar yokEPSS %2enlightenment · imlib29 May 2020
- CVE-2024-2544835İzleyin
An issue in the imlib_free_image_and_decache function of imlib2 v1.9.1 allows attackers to cause a heap buffer overflow via parsing a crafte
YüksekCVSS 8,8İstismar yokEPSS %1enlightenment · imlib29 Şub 2024
- CVE-2024-2544735İzleyin
An issue in the imlib_load_image_with_error_return function of imlib2 v1.9.1 allows attackers to cause a heap buffer overflow via parsing a
YüksekCVSS 8,8İstismar yokEPSS %1enlightenment · imlib29 Şub 2024
- CVE-2024-2545035İzleyin
imlib2 v1.9.1 was discovered to mishandle memory allocation in the function init_imlib_fonts().
YüksekCVSS 8,8İstismar yokEPSS %1enlightenment · imlib29 Şub 2024
- CVE-2022-3770633İzleyin
enlightenment_sys in Enlightenment before 0.25.4 allows local users to gain privileges because it is setuid root, and the system library fun
YüksekCVSS 7,8SilahlaştırılmışEPSS %6enlightenment · enlightenment25 Ara 2022
- CVE-2016-399433İzleyin
The GIF loader in imlib2 before 1.4.9 allows remote attackers to cause a denial of service (application crash) or obtain sensitive informati
YüksekCVSS 8,2İstismar yokEPSS %2debian · debian linux13 May 2016
- CVE-2004-082732İzleyin
Multiple buffer overflows in the ImageMagick graphics library 5.x before 5.4.4, and 6.x before 6.0.6.2, allow remote attackers to cause a de
YüksekCVSS 7,5İstismar yokEPSS %6imagemagick · imagemagick16 Eyl 2004
- CVE-2018-2016732İzleyin
Terminology before 1.3.1 allows Remote Code Execution because popmedia is mishandled, as demonstrated by an unsafe "cat README.md" command w
YüksekCVSS 7,8İstismar yokEPSS %3enlightenment · terminology17 Ara 2018
- CVE-2004-081731İzleyin
Multiple heap-based buffer overflows in the imlib BMP image handler allow remote attackers to execute arbitrary code via a crafted BMP file.
YüksekCVSS 7,5İstismar yokEPSS %5enlightenment · imlib31 Ara 2004
- CVE-2008-518731İzleyin
The load function in the XPM loader for imlib2 1.4.2, and possibly other versions, allows attackers to cause a denial of service (crash) and
YüksekCVSS 7,5İstismar yokEPSS %4enlightenment · imlib220 Kas 2008
- CVE-2014-976431İzleyin
imlib2 before 1.4.7 allows remote attackers to cause a denial of service (segmentation fault) via a crafted GIF file.
YüksekCVSS 7,5İstismar yokEPSS %3debian · debian linux13 May 2016
- CVE-2014-977131İzleyin
Integer overflow in imlib2 before 1.4.7 allows remote attackers to cause a denial of service (memory consumption or application crash) via a
YüksekCVSS 7,5İstismar yokEPSS %3enlightenment · imlib213 May 2016
- CVE-2014-976331İzleyin
imlib2 before 1.4.7 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted PNM file
YüksekCVSS 7,5İstismar yokEPSS %3debian · debian linux13 May 2016
- CVE-2014-976231İzleyin
imlib2 before 1.4.7 allows remote attackers to cause a denial of service (segmentation fault) via a GIF image without a colormap.
YüksekCVSS 7,5İstismar yokEPSS %3enlightenment · imlib213 May 2016
- CVE-2016-399331İzleyin
Off-by-one error in the __imlib_MergeUpdate function in lib/updates.c in imlib2 before 1.4.9 allows remote attackers to cause a denial of se
YüksekCVSS 7,5İstismar yokEPSS %3enlightenment · imlib213 May 2016
- CVE-2011-532631İzleyin
imlib2 before 1.4.9 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) by drawing a 2x1 ellip
YüksekCVSS 7,5İstismar yokEPSS %3debian · debian linux13 May 2016
- CVE-2002-016831İzleyin
Vulnerability in Imlib before 1.9.13 allows attackers to cause a denial of service (crash) and possibly execute arbitrary code by manipulati
YüksekCVSS 7,5İstismar yokEPSS %2enlightenment · imlib22 Nis 2002
- CVE-2002-016731İzleyin
Imlib before 1.9.13 sometimes uses the NetPBM package to load trusted images, which could allow attackers to cause a denial of service (cras
YüksekCVSS 7,5İstismar yokEPSS %2enlightenment · imlib22 Nis 2002
- CVE-2015-897131İzleyin
Terminology 0.7.0 allows remote attackers to execute arbitrary commands via escape sequences that modify the window title and then are writt
YüksekCVSS 7,8İstismar yokEPSS %1debian · debian linux23 Oca 2017
- CVE-2014-184531İzleyin
An unspecified setuid root helper in Enlightenment before 0.17.6 allows local users to gain privileges by leveraging failure to properly san
YüksekCVSS 7,8İstismar yokEPSS %0enlightenment · enlightenment27 Nis 2018
- CVE-2014-184631İzleyin
Enlightenment before 0.17.6 might allow local users to gain privileges via vectors involving the gdb method.
YüksekCVSS 7,8İstismar yokEPSS %0enlightenment · enlightenment27 Nis 2018