Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
swftools swftools 0.9.2 vulnerabilities and exploits
(subscribe to this query)
383
VMScore
CVE-2017-16868
In SWFTools 0.9.2, the wav_convert2mono function in lib/wav.c does not properly restrict a multiplication within a malloc call, which allows remote malicious users to cause a denial of service (integer overflow and NULL pointer dereference) via a crafted WAV file.
Swftools Swftools 0.9.2
383
VMScore
CVE-2017-16890
SWFTools 0.9.2 has a divide-by-zero error in the wav_convert2mono function in lib/wav.c because the align value may be zero.
Swftools Swftools 0.9.2
NA
CVE-2024-22920
swftools 0.9.2 exists to contain a heap-use-after-free via the function bufferWriteData in swftools/lib/action/compile.c.
Swftools Swftools 0.9.2
NA
CVE-2023-29950
swfrender v0.9.2 exists to contain a heap buffer overflow in the function enumerateUsedIDs_fillstyle at modules/swftools.c
Swftools Swftools 0.9.2
606
VMScore
CVE-2017-11101
When SWFTools 0.9.2 processes a crafted file in swfcombine, it can lead to a NULL Pointer Dereference in the swf_Relocate() function in lib/modules/swftools.c.
Swftools Swftools 0.9.2
NA
CVE-2022-46440
ttftool v0.9.2 exists to contain a segmentation violation via the readU16 function at ttf.c.
Swftools Swftools 0.9.2
NA
CVE-2024-22911
A stack-buffer-underflow vulnerability was found in SWFTools v0.9.2, in the function parseExpression at src/swfc.c:2602.
Swftools Swftools 0.9.2
NA
CVE-2024-22912
A global-buffer-overflow was found in SWFTools v0.9.2, in the function countline at swf5compiler.flex:327. It allows an malicious user to cause code execution.
Swftools Swftools 0.9.2
NA
CVE-2024-22913
A heap-buffer-overflow was found in SWFTools v0.9.2, in the function swf5lex at lex.swf5.c:1321. It allows an malicious user to cause code execution.
Swftools Swftools 0.9.2
NA
CVE-2024-22914
A heap-use-after-free was found in SWFTools v0.9.2, in the function input at lex.swf5.c:2620. It allows an malicious user to cause denial of service.
Swftools Swftools 0.9.2
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-29895
blind SQL injection
CVE-2024-5064
CVE-2023-52677
CVE-2023-52682
CVE-2024-30051
CVE-2024-35849
remote attackers
remote
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
NEXT »