foolabs kayıtları
foolabs üreticisine ait 23 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 11
- Düzeltme kaydı olan
- %95,7
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Yıllara göre kayıt
Çubuk: toplam · koyu kısım: CISA KEV.
Tekrar eden sınıflar
- CWE-189 Numeric Errors8
- CWE-399 Resource Management Errors6
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer5
- CWE-20 Improper Input Validation3
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
23 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2009-0165İstismar yok | Integer overflow in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, as used in Poppler and other products, when running on Mac OS X, has unsppoppler · poppler · CWE-189 | Kritik10,0 | — | %3,6 | 23 Nis 2009 |
40Planlayın | CVE-2009-3608İstismar yok | Integer overflow in the ObjectStream::ObjectStream function in XRef.cc in Xpdf 3.x before 3.02pl4 and Poppler before 0.12.1, as used in GPdfpoppler · poppler · CWE-189 | Kritik9,3 | — | %10,2 | 21 Eki 2009 |
40Planlayın | CVE-2009-3604İstismar yok | The Splash::drawImage function in Splash.cc in Xpdf 2.x and 3.x before 3.02pl4, and Poppler 0.x, as used in GPdf and kdegraphics KPDF, does kde · kpdf · CWE-399 | Kritik9,3 | — | %8,7 | 21 Eki 2009 |
40Planlayın | CVE-2009-3606İstismar yok | Integer overflow in the PSOutputDev::doImageL1Sep function in Xpdf before 3.02pl4, and Poppler 0.x, as used in kdegraphics KPDF, might allowpoppler · poppler · CWE-189 | Kritik9,3 | — | %8,6 | 21 Eki 2009 |
40Planlayın | CVE-2009-3603İstismar yok | Integer overflow in the SplashBitmap::SplashBitmap function in Xpdf 3.x before 3.02pl4 and Poppler before 0.12.1 might allow remote attackerpoppler · poppler · CWE-189 | Kritik9,3 | — | %8,6 | 21 Eki 2009 |
32İzleyin | CVE-2009-1182İstismar yok | Multiple buffer overflows in the JBIG2 MMR decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other propoppler · poppler · CWE-119 | Yüksek7,5 | — | %7,3 | 23 Nis 2009 |
31İzleyin | CVE-2011-0764İstismar yok | t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, uses an invalid pointer in conjunction with a dereferenct1lib · t1lib · CWE-20 | Orta6,8 | — | %13,1 | 31 Mar 2011 |
29İzleyin | CVE-2009-1179İstismar yok | Integer overflow in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows poppler · poppler · CWE-189 | Orta6,8 | — | %5,5 | 23 Nis 2009 |
29İzleyin | CVE-2009-0800İstismar yok | Multiple "input validation flaws" in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and otherpoppler · poppler · CWE-20 | Orta6,8 | — | %5,5 | 23 Nis 2009 |
29İzleyin | CVE-2009-1180İstismar yok | The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to poppler · poppler · CWE-399 | Orta6,8 | — | %5,4 | 23 Nis 2009 |
29İzleyin | CVE-2009-0195İstismar yok | Heap-based buffer overflow in Xpdf 3.02pl2 and earlier, CUPS 1.3.9, and probably other products, allows remote attackers to execute arbitrarapple · cups · CWE-119 | Orta6,8 | — | %5,4 | 23 Nis 2009 |
28İzleyin | CVE-2010-3704İstismar yok | The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up topoppler · poppler · CWE-20 | Orta6,8 | — | %3,6 | 5 Kas 2010 |
27İzleyin | CVE-2009-1144İstismar yok | Untrusted search path vulnerability in the Gentoo package of Xpdf before 3.02-r2 allows local users to gain privileges via a Trojan horse xpgentoo · gentoo linux · CWE-94 | Orta6,9 | — | %0,4 | 9 Nis 2009 |
20İzleyin | CVE-2011-1552İstismar yok | t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, reads from invalid memory locations, which allows remotet1lib · t1lib · CWE-119 | Orta4,3 | — | %10,4 | 31 Mar 2011 |
19İzleyin | CVE-2011-1554İstismar yok | Off-by-one error in t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, allows remote attackers to cause a dt1lib · t1lib · CWE-189 | Orta4,3 | — | %5,4 | 31 Mar 2011 |
19İzleyin | CVE-2011-1553İstismar yok | Use-after-free vulnerability in t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, allows remote attackers t1lib · t1lib · CWE-399 | Orta4,3 | — | %5,4 | 31 Mar 2011 |
18İzleyin | CVE-2009-3609İstismar yok | Integer overflow in the ImageStream::ImageStream function in Stream.cc in Xpdf before 3.02pl4 and Poppler before 0.12.1, as used in GPdf, kdpoppler · poppler · CWE-189 | Orta4,3 | — | %4,7 | 21 Eki 2009 |
18İzleyin | CVE-2009-1181İstismar yok | The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to poppler · poppler · CWE-399 | Orta4,3 | — | %3,8 | 23 Nis 2009 |
18İzleyin | CVE-2009-1183İstismar yok | The JBIG2 MMR decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackerspoppler · poppler · CWE-399 | Orta4,3 | — | %3,8 | 23 Nis 2009 |
18İzleyin | CVE-2009-0799İstismar yok | The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to poppler · poppler · CWE-119 | Orta4,3 | — | %3,8 | 23 Nis 2009 |
18İzleyin | CVE-2009-0146İstismar yok | Multiple buffer overflows in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allow remote attackerfoolabs · xpdf · CWE-119 | Orta4,3 | — | %2,8 | 23 Nis 2009 |
18İzleyin | CVE-2009-0147İstismar yok | Multiple integer overflows in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allow remote attackefoolabs · xpdf · CWE-189 | Orta4,3 | — | %2,6 | 23 Nis 2009 |
18İzleyin | CVE-2009-0166İstismar yok | The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allows remote attackers to cause a denial of servifoolabs · xpdf · CWE-399 | Orta4,3 | — | %2,3 | 23 Nis 2009 |
- CVE-2009-016541Planlayın
Integer overflow in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, as used in Poppler and other products, when running on Mac OS X, has unsp
KritikCVSS 10,0İstismar yokEPSS %4poppler · poppler23 Nis 2009
- CVE-2009-360840Planlayın
Integer overflow in the ObjectStream::ObjectStream function in XRef.cc in Xpdf 3.x before 3.02pl4 and Poppler before 0.12.1, as used in GPdf
KritikCVSS 9,3İstismar yokEPSS %10poppler · poppler21 Eki 2009
- CVE-2009-360440Planlayın
The Splash::drawImage function in Splash.cc in Xpdf 2.x and 3.x before 3.02pl4, and Poppler 0.x, as used in GPdf and kdegraphics KPDF, does
KritikCVSS 9,3İstismar yokEPSS %9kde · kpdf21 Eki 2009
- CVE-2009-360640Planlayın
Integer overflow in the PSOutputDev::doImageL1Sep function in Xpdf before 3.02pl4, and Poppler 0.x, as used in kdegraphics KPDF, might allow
KritikCVSS 9,3İstismar yokEPSS %9poppler · poppler21 Eki 2009
- CVE-2009-360340Planlayın
Integer overflow in the SplashBitmap::SplashBitmap function in Xpdf 3.x before 3.02pl4 and Poppler before 0.12.1 might allow remote attacker
KritikCVSS 9,3İstismar yokEPSS %9poppler · poppler21 Eki 2009
- CVE-2009-118232İzleyin
Multiple buffer overflows in the JBIG2 MMR decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other pro
YüksekCVSS 7,5İstismar yokEPSS %7poppler · poppler23 Nis 2009
- CVE-2011-076431İzleyin
t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, uses an invalid pointer in conjunction with a dereferenc
OrtaCVSS 6,8İstismar yokEPSS %13t1lib · t1lib31 Mar 2011
- CVE-2009-117929İzleyin
Integer overflow in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows
OrtaCVSS 6,8İstismar yokEPSS %6poppler · poppler23 Nis 2009
- CVE-2009-080029İzleyin
Multiple "input validation flaws" in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other
OrtaCVSS 6,8İstismar yokEPSS %5poppler · poppler23 Nis 2009
- CVE-2009-118029İzleyin
The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to
OrtaCVSS 6,8İstismar yokEPSS %5poppler · poppler23 Nis 2009
- CVE-2009-019529İzleyin
Heap-based buffer overflow in Xpdf 3.02pl2 and earlier, CUPS 1.3.9, and probably other products, allows remote attackers to execute arbitrar
OrtaCVSS 6,8İstismar yokEPSS %5apple · cups23 Nis 2009
- CVE-2010-370428İzleyin
The FoFiType1::parse function in fofi/FoFiType1.cc in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to
OrtaCVSS 6,8İstismar yokEPSS %4poppler · poppler5 Kas 2010
- CVE-2009-114427İzleyin
Untrusted search path vulnerability in the Gentoo package of Xpdf before 3.02-r2 allows local users to gain privileges via a Trojan horse xp
OrtaCVSS 6,9İstismar yokEPSS %0gentoo · gentoo linux9 Nis 2009
- CVE-2011-155220İzleyin
t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, reads from invalid memory locations, which allows remote
OrtaCVSS 4,3İstismar yokEPSS %10t1lib · t1lib31 Mar 2011
- CVE-2011-155419İzleyin
Off-by-one error in t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, allows remote attackers to cause a d
OrtaCVSS 4,3İstismar yokEPSS %5t1lib · t1lib31 Mar 2011
- CVE-2011-155319İzleyin
Use-after-free vulnerability in t1lib 5.1.2 and earlier, as used in Xpdf before 3.02pl6, teTeX, and other products, allows remote attackers
OrtaCVSS 4,3İstismar yokEPSS %5t1lib · t1lib31 Mar 2011
- CVE-2009-360918İzleyin
Integer overflow in the ImageStream::ImageStream function in Stream.cc in Xpdf before 3.02pl4 and Poppler before 0.12.1, as used in GPdf, kd
OrtaCVSS 4,3İstismar yokEPSS %5poppler · poppler21 Eki 2009
- CVE-2009-118118İzleyin
The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to
OrtaCVSS 4,3İstismar yokEPSS %4poppler · poppler23 Nis 2009
- CVE-2009-118318İzleyin
The JBIG2 MMR decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers
OrtaCVSS 4,3İstismar yokEPSS %4poppler · poppler23 Nis 2009
- CVE-2009-079918İzleyin
The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, Poppler before 0.10.6, and other products allows remote attackers to
OrtaCVSS 4,3İstismar yokEPSS %4poppler · poppler23 Nis 2009
- CVE-2009-014618İzleyin
Multiple buffer overflows in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allow remote attacker
OrtaCVSS 4,3İstismar yokEPSS %3foolabs · xpdf23 Nis 2009
- CVE-2009-014718İzleyin
Multiple integer overflows in the JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allow remote attacke
OrtaCVSS 4,3İstismar yokEPSS %3foolabs · xpdf23 Nis 2009
- CVE-2009-016618İzleyin
The JBIG2 decoder in Xpdf 3.02pl2 and earlier, CUPS 1.3.9 and earlier, and other products allows remote attackers to cause a denial of servi
OrtaCVSS 4,3İstismar yokEPSS %2foolabs · xpdf23 Nis 2009