Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
swftools vulnerabilities and exploits
(subscribe to this query)
5.5
CVSSv3
CVE-2017-16890
SWFTools 0.9.2 has a divide-by-zero error in the wav_convert2mono function in lib/wav.c because the align value may be zero.
Swftools Swftools 0.9.2
NA
CVE-2010-1516
Multiple integer overflows in SWFTools 0.9.1 allow remote malicious users to execute arbitrary code via (1) a crafted PNG file, related to the getPNG function in lib/png.c; or (2) a crafted JPEG file, related to the jpeg_load function in lib/jpeg.c.
Swftools Swftools 0.9.1
5.5
CVSSv3
CVE-2017-16711
The swf_DefineLosslessBitsTagToImage function in lib/modules/swfbits.c in SWFTools 0.9.2 mishandles an uncompress failure, which allows remote malicious users to cause a denial of service (NULL pointer dereference and application crash) because of extractDefinitions in lib/reader...
Swftools Swftools 0.9.2
7.8
CVSSv3
CVE-2017-16793
The wav_convert2mono function in lib/wav.c in SWFTools 0.9.2 does not properly validate WAV data, which allows remote malicious users to cause a denial of service (incorrect malloc and heap-based buffer overflow) or possibly have unspecified other impact via a crafted file.
Swftools Swftools 0.9.2
5.5
CVSSv3
CVE-2017-16794
The png_load function in lib/png.c in SWFTools 0.9.2 does not properly validate a multiplication of width and bits-per-pixel values, which allows remote malicious users to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file, as demonst...
Swftools Swftools 0.9.2
7.8
CVSSv3
CVE-2017-16796
In SWFTools 0.9.2, the png_load function in lib/png.c does not check the return value of a realloc call, which allows remote malicious users to cause a denial of service (invalid write and application crash) or possibly have unspecified other impact via vectors involving an IDAT ...
Swftools Swftools 0.9.2
7.8
CVSSv3
CVE-2017-16797
In SWFTools 0.9.2, the png_load function in lib/png.c does not properly validate an alloclen_64 multiplication of width and height values, which allows remote malicious users to cause a denial of service (integer overflow, heap-based buffer overflow, and application crash) or pos...
Swftools Swftools 0.9.2
5.5
CVSSv3
CVE-2017-16868
In SWFTools 0.9.2, the wav_convert2mono function in lib/wav.c does not properly restrict a multiplication within a malloc call, which allows remote malicious users to cause a denial of service (integer overflow and NULL pointer dereference) via a crafted WAV file.
Swftools Swftools 0.9.2
5.5
CVSSv3
CVE-2023-27249
swfdump v0.9.2 exists to contain a heap buffer overflow in the function swf_GetPlaceObject at swfobject.c.
Swftools Swftools 0.9.2
7.5
CVSSv3
CVE-2017-10976
When SWFTools 0.9.2 processes a crafted file in ttftool, it can lead to a heap-based buffer over-read in the readBlock() function in lib/ttf.c.
Swftools Swftools 0.9.2
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
bypass
open redirect
CVE-2024-4358
CVE-2024-24199
CVE-2024-5550
CVE-2024-5305
CVE-2024-30373
CVE-2024-1800
deserialization
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
3
4
5
6
7
8
9
10
NEXT »