Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
tug tetex vulnerabilities and exploits
(subscribe to this query)
6.8
CVSSv2
CVE-2007-5935
Stack-based buffer overflow in hpc.c in dvips in teTeX and TeXlive 2007 and previous versions allows user-assisted malicious users to execute arbitrary code via a DVI file with a long href tag.
Tetex Tetex
Tug Texlive 2007
3.6
CVSSv2
CVE-2007-5936
dvips in teTeX and TeXlive 2007 and previous versions allows local users to obtain sensitive information and modify certain data by creating certain temporary files before they are processed by dviljk, which can then be read or modified in place.
Tetex Tetex
Tug Texlive 2007
6.8
CVSSv2
CVE-2007-5937
Multiple buffer overflows in dvi2xx.c in dviljk in teTeX and TeXlive 2007 and previous versions might allow user-assisted malicious users to execute arbitrary code via a crafted DVI input file.
Tug Texlive 2007
Tetex Tetex
6.8
CVSSv2
CVE-2010-0739
Integer overflow in the predospecial function in dospecial.c in dvips in (1) TeX Live and (2) teTeX might allow user-assisted remote malicious users to execute arbitrary code via a crafted DVI file that triggers a heap-based buffer overflow. NOTE: some of these details are obtain...
Tug Tetex
Tug Tex Live
6.8
CVSSv2
CVE-2010-0827
Integer overflow in dvips in TeX Live 2009 and previous versions, and teTeX, allows remote malicious users to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted virtual font (VF) file associated with a DVI file.
Tug Tex Live 1996
Tug Tex Live 1998
Tug Tex Live 2007
Tug Tex Live 2008
Tug Tex Live 2001
Tug Tex Live 2002
Tug Tex Live 1999
Tug Tex Live 2000
Tug Tex Live
Tug Tex Live 2003
Tug Tex Live 2004
Tug Tex Live 2005
Tug Tetex
6.8
CVSSv2
CVE-2010-1440
Multiple integer overflows in dvipsk/dospecial.c in dvips in TeX Live 2009 and previous versions, and teTeX, allow remote malicious users to cause a denial of service (application crash) or possibly execute arbitrary code via a special command in a DVI file, related to the (1) pr...
Tug Tex Live 2007
Tug Tetex
Tug Tex Live 2008
Tug Tex Live 2004
Tug Tex Live
Tug Tex Live 2002
Tug Tex Live 1996
Tug Tex Live 2001
Tug Tex Live 1999
Tug Tex Live 2005
Tug Tex Live 1998
Tug Tex Live 2000
Tug Tex Live 2003
4.3
CVSSv2
CVE-2010-0829
Multiple array index errors in set.c in dvipng 1.11 and 1.12, and teTeX, allow remote malicious users to cause a denial of service (application crash) or possibly execute arbitrary code via a malformed DVI file.
Jan-ake Larsson Dvipng 1.11
Jan-ake Larsson Dvipng 1.12
Tug Tetex
7.6
CVSSv2
CVE-2010-2642
Heap-based buffer overflow in the AFM font parser in the dvi-backend component in Evince 2.32 and previous versions, teTeX 3.0, t1lib 5.1.2, and possibly other products allows remote malicious users to cause a denial of service (application crash) or possibly execute arbitrary co...
Redhat Evince 2.31.92
Redhat Evince 2.31.4.1
Redhat Evince 2.31.6
Redhat Evince 2.31.1
Redhat Evince 2.29.92
Redhat Evince 2.25
Redhat Evince 2.24
Redhat Evince 0.6
Redhat Evince 0.7
Tug Tetex 3.0
T1lib T1lib 5.1.2
Redhat Evince 2.31.4
Redhat Evince 2.30.3
Redhat Evince 2.29
Redhat Evince 2.28
Redhat Evince 2.22
Redhat Evince 2.19
Redhat Evince 0.2
Redhat Evince 0.3
Redhat Evince 2.31.6.1
Redhat Evince 2.31.90
Redhat Evince 2.31
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
blind SQL injection
SSRF
buffer overflow
CVE-2023-28952
CVE-2023-41822
CVE-2024-27956
CVE-2023-7028
CVE-2024-34447
CVE-2024-34460
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started