swftools kayıtları
swftools üreticisine ait 126 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 4
- Düzeltme kaydı olan
- %1,6
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-787 Out-of-bounds Write40
- CWE-476 NULL Pointer Dereference35
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer14
- CWE-125 Out-of-bounds Read10
- CWE-416 Use After Free9
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')3
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
126 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2022-40009İstismar yok | SWFTools commit 772e55a was discovered to contain a heap-use-after-free via the function grow_unicode at /lib/ttf.c.swftools · swftools · CWE-416 | Kritik9,8 | — | %1,2 | 20 Eyl 2022 |
39İzleyin | CVE-2022-40008İstismar yok | SWFTools commit 772e55a was discovered to contain a heap-buffer overflow via the function readU8 at /lib/ttf.c.swftools · swftools · CWE-787 | Kritik9,8 | — | %1,2 | 20 Eyl 2022 |
38İzleyin | CVE-2010-1516İstismar yok | Multiple integer overflows in SWFTools 0.9.1 allow remote attackers to execute arbitrary code via (1) a crafted PNG file, related to the getswftools · swftools · CWE-189 | Kritik9,3 | — | %3,5 | 17 Ağu 2010 |
36İzleyin | CVE-2017-8400İstismar yok | In SWFTools 0.9.2, an out-of-bounds write of heap data can occur in the function png_load() in lib/png.c:755.swftools · swftools · CWE-787 | Yüksek8,8 | — | %2,1 | 1 May 2017 |
36İzleyin | CVE-2017-9924İstismar yok | In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of service via a craftedswftools · swftools · CWE-119 | Yüksek8,8 | — | %2,0 | 5 Tem 2017 |
36İzleyin | CVE-2017-9925İstismar yok | In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of service via a craftedswftools · swftools · CWE-119 | Yüksek8,8 | — | %2,0 | 5 Tem 2017 |
36İzleyin | CVE-2024-26339İstismar yok | swftools v0.9.2 was discovered to contain a strcpy parameter overlap via /home/swftools/src/swfc+0x48318a.swftools · swftools | Kritik9,1 | — | %0,8 | 5 Mar 2024 |
35İzleyin | CVE-2017-11101İstismar yok | When SWFTools 0.9.2 processes a crafted file in swfcombine, it can lead to a NULL Pointer Dereference in the swf_Relocate() function in lib/swftools · swftools · CWE-476 | Yüksek8,8 | — | %1,4 | 7 Tem 2017 |
35İzleyin | CVE-2017-11100İstismar yok | When SWFTools 0.9.2 processes a crafted file in swfextract, it can lead to a NULL Pointer Dereference in the swf_FoldSprite() function in liswftools · swftools · CWE-476 | Yüksek8,8 | — | %1,4 | 7 Tem 2017 |
35İzleyin | CVE-2017-11099İstismar yok | When SWFTools 0.9.2 processes a crafted file in wav2swf, it can lead to a Segmentation Violation in the wav_convert2mono() function in lib/wswftools · swftools · CWE-20 | Yüksek8,8 | — | %1,4 | 7 Tem 2017 |
35İzleyin | CVE-2017-11098İstismar yok | When SWFTools 0.9.2 processes a crafted file in png2swf, it can lead to a Segmentation Violation in the png_load() function in lib/png.c.swftools · swftools · CWE-20 | Yüksek8,8 | — | %1,4 | 7 Tem 2017 |
35İzleyin | CVE-2017-11096İstismar yok | When SWFTools 0.9.2 processes a crafted file in swfcombine, it can lead to a NULL Pointer Dereference in the swf_DeleteFilter() function in swftools · swftools · CWE-476 | Yüksek8,8 | — | %1,4 | 7 Tem 2017 |
35İzleyin | CVE-2017-11097İstismar yok | When SWFTools 0.9.2 processes a crafted file in swfc, it can lead to a NULL Pointer Dereference in the dict_lookup() function in lib/q.c.swftools · swftools · CWE-476 | Yüksek8,8 | — | %1,4 | 7 Tem 2017 |
35İzleyin | CVE-2017-9927İstismar yok | In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have unspecified other impaswftools · swftools · CWE-119 | Yüksek8,8 | — | %1,3 | 5 Tem 2017 |
35İzleyin | CVE-2017-9926İstismar yok | In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have unspecified other impaswftools · swftools · CWE-119 | Yüksek8,8 | — | %1,3 | 5 Tem 2017 |
31İzleyin | CVE-2017-7698İstismar yok | A Use After Free in the pdf2swf part of swftools 0.9.2 and earlier allows remote attackers to execute arbitrary code via a malformed PDF docswftools · swftools · CWE-416 | Yüksek7,8 | — | %1,7 | 10 May 2017 |
31İzleyin | CVE-2017-16796İstismar yok | In SWFTools 0.9.2, the png_load function in lib/png.c does not check the return value of a realloc call, which allows remote attackers to caswftools · swftools · CWE-119 | Yüksek7,8 | — | %1,3 | 12 Kas 2017 |
31İzleyin | CVE-2021-42204İstismar yok | An issue was discovered in swftools through 20201222.swftools · swftools · CWE-787 | Yüksek7,8 | — | %1,3 | 2 Haz 2022 |
31İzleyin | CVE-2017-16797İstismar yok | In SWFTools 0.9.2, the png_load function in lib/png.c does not properly validate an alloclen_64 multiplication of width and height values, wswftools · swftools · CWE-190 | Yüksek7,8 | — | %1,2 | 12 Kas 2017 |
31İzleyin | CVE-2017-16793İstismar yok | The wav_convert2mono function in lib/wav.c in SWFTools 0.9.2 does not properly validate WAV data, which allows remote attackers to cause a dswftools · swftools · CWE-119 | Yüksek7,8 | — | %1,2 | 12 Kas 2017 |
31İzleyin | CVE-2021-42203İstismar yok | An issue was discovered in swftools through 20201222.swftools · swftools · CWE-416 | Yüksek7,8 | — | %1,2 | 2 Haz 2022 |
31İzleyin | CVE-2021-42201İstismar yok | An issue was discovered in swftools through 20201222.swftools · swftools · CWE-787 | Yüksek7,8 | — | %1,1 | 2 Haz 2022 |
31İzleyin | CVE-2021-42197İstismar yok | An issue was discovered in swftools through 20201222 through a memory leak in the swftools when swfdump is used.swftools · swftools · CWE-401 | Yüksek7,8 | — | %1,1 | 2 Haz 2022 |
31İzleyin | CVE-2021-39582İstismar yok | An issue was discovered in swftools through 20200710.swftools · swftools · CWE-787 | Yüksek7,8 | — | %1,1 | 20 Eyl 2021 |
31İzleyin | CVE-2021-39579İstismar yok | An issue was discovered in swftools through 20200710.swftools · swftools · CWE-787 | Yüksek7,8 | — | %1,1 | 20 Eyl 2021 |
- CVE-2022-4000939İzleyin
SWFTools commit 772e55a was discovered to contain a heap-use-after-free via the function grow_unicode at /lib/ttf.c.
KritikCVSS 9,8İstismar yokEPSS %1swftools · swftools20 Eyl 2022
- CVE-2022-4000839İzleyin
SWFTools commit 772e55a was discovered to contain a heap-buffer overflow via the function readU8 at /lib/ttf.c.
KritikCVSS 9,8İstismar yokEPSS %1swftools · swftools20 Eyl 2022
- CVE-2010-151638İzleyin
Multiple integer overflows in SWFTools 0.9.1 allow remote attackers to execute arbitrary code via (1) a crafted PNG file, related to the get
KritikCVSS 9,3İstismar yokEPSS %3swftools · swftools17 Ağu 2010
- CVE-2017-840036İzleyin
In SWFTools 0.9.2, an out-of-bounds write of heap data can occur in the function png_load() in lib/png.c:755.
YüksekCVSS 8,8İstismar yokEPSS %2swftools · swftools1 May 2017
- CVE-2017-992436İzleyin
In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of service via a crafted
YüksekCVSS 8,8İstismar yokEPSS %2swftools · swftools5 Tem 2017
- CVE-2017-992536İzleyin
In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of service via a crafted
YüksekCVSS 8,8İstismar yokEPSS %2swftools · swftools5 Tem 2017
- CVE-2024-2633936İzleyin
swftools v0.9.2 was discovered to contain a strcpy parameter overlap via /home/swftools/src/swfc+0x48318a.
KritikCVSS 9,1İstismar yokEPSS %1swftools · swftools5 Mar 2024
- CVE-2017-1110135İzleyin
When SWFTools 0.9.2 processes a crafted file in swfcombine, it can lead to a NULL Pointer Dereference in the swf_Relocate() function in lib/
YüksekCVSS 8,8İstismar yokEPSS %1swftools · swftools7 Tem 2017
- CVE-2017-1110035İzleyin
When SWFTools 0.9.2 processes a crafted file in swfextract, it can lead to a NULL Pointer Dereference in the swf_FoldSprite() function in li
YüksekCVSS 8,8İstismar yokEPSS %1swftools · swftools7 Tem 2017
- CVE-2017-1109935İzleyin
When SWFTools 0.9.2 processes a crafted file in wav2swf, it can lead to a Segmentation Violation in the wav_convert2mono() function in lib/w
YüksekCVSS 8,8İstismar yokEPSS %1swftools · swftools7 Tem 2017
- CVE-2017-1109835İzleyin
When SWFTools 0.9.2 processes a crafted file in png2swf, it can lead to a Segmentation Violation in the png_load() function in lib/png.c.
YüksekCVSS 8,8İstismar yokEPSS %1swftools · swftools7 Tem 2017
- CVE-2017-1109635İzleyin
When SWFTools 0.9.2 processes a crafted file in swfcombine, it can lead to a NULL Pointer Dereference in the swf_DeleteFilter() function in
YüksekCVSS 8,8İstismar yokEPSS %1swftools · swftools7 Tem 2017
- CVE-2017-1109735İzleyin
When SWFTools 0.9.2 processes a crafted file in swfc, it can lead to a NULL Pointer Dereference in the dict_lookup() function in lib/q.c.
YüksekCVSS 8,8İstismar yokEPSS %1swftools · swftools7 Tem 2017
- CVE-2017-992735İzleyin
In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have unspecified other impa
YüksekCVSS 8,8İstismar yokEPSS %1swftools · swftools5 Tem 2017
- CVE-2017-992635İzleyin
In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have unspecified other impa
YüksekCVSS 8,8İstismar yokEPSS %1swftools · swftools5 Tem 2017
- CVE-2017-769831İzleyin
A Use After Free in the pdf2swf part of swftools 0.9.2 and earlier allows remote attackers to execute arbitrary code via a malformed PDF doc
YüksekCVSS 7,8İstismar yokEPSS %2swftools · swftools10 May 2017
- CVE-2017-1679631İzleyin
In SWFTools 0.9.2, the png_load function in lib/png.c does not check the return value of a realloc call, which allows remote attackers to ca
YüksekCVSS 7,8İstismar yokEPSS %1swftools · swftools12 Kas 2017
- CVE-2021-4220431İzleyin
An issue was discovered in swftools through 20201222.
YüksekCVSS 7,8İstismar yokEPSS %1swftools · swftools2 Haz 2022
- CVE-2017-1679731İzleyin
In SWFTools 0.9.2, the png_load function in lib/png.c does not properly validate an alloclen_64 multiplication of width and height values, w
YüksekCVSS 7,8İstismar yokEPSS %1swftools · swftools12 Kas 2017
- CVE-2017-1679331İzleyin
The wav_convert2mono function in lib/wav.c in SWFTools 0.9.2 does not properly validate WAV data, which allows remote attackers to cause a d
YüksekCVSS 7,8İstismar yokEPSS %1swftools · swftools12 Kas 2017
- CVE-2021-4220331İzleyin
An issue was discovered in swftools through 20201222.
YüksekCVSS 7,8İstismar yokEPSS %1swftools · swftools2 Haz 2022
- CVE-2021-4220131İzleyin
An issue was discovered in swftools through 20201222.
YüksekCVSS 7,8İstismar yokEPSS %1swftools · swftools2 Haz 2022
- CVE-2021-4219731İzleyin
An issue was discovered in swftools through 20201222 through a memory leak in the swftools when swfdump is used.
YüksekCVSS 7,8İstismar yokEPSS %1swftools · swftools2 Haz 2022
- CVE-2021-3958231İzleyin
An issue was discovered in swftools through 20200710.
YüksekCVSS 7,8İstismar yokEPSS %1swftools · swftools20 Eyl 2021
- CVE-2021-3957931İzleyin
An issue was discovered in swftools through 20200710.
YüksekCVSS 7,8İstismar yokEPSS %1swftools · swftools20 Eyl 2021