Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
dia dia vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2006-1550
Multiple buffer overflows in the xfig import code (xfig-import.c) in Dia 0.87 and later prior to 0.95-pre6 allow user-assisted malicious users to have an unknown impact via a crafted xfig file, possibly involving an invalid (1) color index, (2) number of points, or (3) depth.
Dia Dia 0.91
Dia Dia 0.92.2
Dia Dia 0.87
Dia Dia 0.88.1
Dia Dia 0.93
Dia Dia 0.94
NA
CVE-2005-2966
The Python SVG import plugin (diasvg_import.py) for DIA 0.94 and previous versions allows user-assisted malicious users to execute arbitrary commands via a crafted SVG file.
Dia Dia 0.91
Dia Dia 0.92.2
Dia Dia 0.93
Dia Dia
NA
CVE-2006-2453
Multiple unspecified format string vulnerabilities in Dia have unspecified impact and attack vectors, a different set of issues than CVE-2006-2480.
Dia Dia
NA
CVE-2007-3408
Multiple unspecified vulnerabilities in Dia prior to 0.96.1-6 have unspecified attack vectors and impact, probably involving the use of vulnerable FreeType libraries that contain CVE-2007-2754 and/or CVE-2007-1351.
Dia Dia
NA
CVE-2006-2480
Format string vulnerability in Dia 0.94 allows user-assisted malicious users to cause a denial of service (crash) and possibly execute arbitrary code by triggering errors or warnings, as demonstrated via format string specifiers in a .bmp filename. NOTE: the original exploit was ...
Dia Dia 0.94
1 EDB exploit
NA
CVE-2008-5984
Untrusted search path vulnerability in the Python plugin in Dia 0.96.1, and possibly other versions, allows local users to execute arbitrary code via a Trojan horse Python file in the current working directory, related to a vulnerability in the PySys_SetArgv function (CVE-2008-59...
Dia Dia 0.96.1
5.5
CVSSv3
CVE-2019-19451
When GNOME Dia prior to 2019-11-27 is launched with a filename argument that is not a valid codepoint in the current encoding, it enters an endless loop, thus endlessly writing text to stdout. If this launch is from a thumbnailer service, this output will usually be written to di...
Gnome Dia
Fedoraproject Fedora 32
Fedoraproject Fedora 33
Opensuse Leap 15.1
9.8
CVSSv3
CVE-2019-13656
An access vulnerability in CA Common Services DIA of CA Technologies Client Automation 14 and Workload Automation AE 11.3.5, 11.3.6 allows a remote malicious user to execute arbitrary code.
Broadcom Ca Workload Automation Ae 11.3.6
Broadcom Ca Workload Automation Ae 11.3.5
Broadcom Ca Client Automation 14.0
NA
CVE-2007-1546
Array index error in Network Audio System (NAS) prior to 1.8a SVN 237 allows remote malicious users to cause a denial of service (crash) via (1) large num_action values in the ProcAuSetElements function in server/dia/audispatch.c or (2) a large inputNum parameter to the compileIn...
Radscan Network Audio System 1.8a
NA
CVE-2007-1545
The AddResource function in server/dia/resource.c in Network Audio System (NAS) prior to 1.8a SVN 237 allows remote malicious users to cause a denial of service (server crash) via a nonexistent client ID.
Radscan Network Audio System 1.8a
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-5248
CVE-2024-3110
CVE-2024-5552
CVE-2024-29415
HTML injection
CVE-2024-3095
TCP
type confusion
CVE-2024-1800
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »