Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
swftools vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2024-22955
swftools 0.9.2 exists to contain a stack-buffer-underflow vulnerability via the function parseExpression at swftools/src/swfc.c:2576.
Swftools Swftools 0.9.2
NA
CVE-2024-22956
swftools 0.9.2 exists to contain a heap-use-after-free vulnerability via the function removeFromTo at swftools/src/swfc.c:838
Swftools Swftools 0.9.2
NA
CVE-2024-22957
swftools 0.9.2 exists to contain an Out-of-bounds Read vulnerability via the function dict_do_lookup in swftools/lib/q.c:1190.
Swftools Swftools 0.9.2
4.3
CVSSv2
CVE-2017-16794
The png_load function in lib/png.c in SWFTools 0.9.2 does not properly validate a multiplication of width and bits-per-pixel values, which allows remote malicious users to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file, as demonst...
Swftools Swftools 0.9.2
6.8
CVSSv2
CVE-2017-16796
In SWFTools 0.9.2, the png_load function in lib/png.c does not check the return value of a realloc call, which allows remote malicious users to cause a denial of service (invalid write and application crash) or possibly have unspecified other impact via vectors involving an IDAT ...
Swftools Swftools 0.9.2
6.8
CVSSv2
CVE-2017-16797
In SWFTools 0.9.2, the png_load function in lib/png.c does not properly validate an alloclen_64 multiplication of width and height values, which allows remote malicious users to cause a denial of service (integer overflow, heap-based buffer overflow, and application crash) or pos...
Swftools Swftools 0.9.2
NA
CVE-2023-27249
swfdump v0.9.2 exists to contain a heap buffer overflow in the function swf_GetPlaceObject at swfobject.c.
Swftools Swftools 0.9.2
4.3
CVSSv2
CVE-2017-16711
The swf_DefineLosslessBitsTagToImage function in lib/modules/swfbits.c in SWFTools 0.9.2 mishandles an uncompress failure, which allows remote malicious users to cause a denial of service (NULL pointer dereference and application crash) because of extractDefinitions in lib/reader...
Swftools Swftools 0.9.2
NA
CVE-2022-46440
ttftool v0.9.2 exists to contain a segmentation violation via the readU16 function at ttf.c.
Swftools Swftools 0.9.2
4.3
CVSSv2
CVE-2017-16868
In SWFTools 0.9.2, the wav_convert2mono function in lib/wav.c does not properly restrict a multiplication within a malloc call, which allows remote malicious users to cause a denial of service (integer overflow and NULL pointer dereference) via a crafted WAV file.
Swftools Swftools 0.9.2
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-23316
SQL injection
type confusion
CVE-2024-20697
CVE-2024-4344
local
CVE-2024-30043
CVE-2024-3821
CVE-2024-5041
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »