Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
swftools vulnerabilities and exploits
(subscribe to this query)
7.8
CVSSv3
CVE-2024-22919
swftools0.9.2 exists to contain a global-buffer-overflow vulnerability via the function parseExpression at swftools/src/swfc.c:2587.
Swftools Swftools 0.9.2
7.8
CVSSv3
CVE-2024-22920
swftools 0.9.2 exists to contain a heap-use-after-free via the function bufferWriteData in swftools/lib/action/compile.c.
Swftools Swftools 0.9.2
7.8
CVSSv3
CVE-2024-22955
swftools 0.9.2 exists to contain a stack-buffer-underflow vulnerability via the function parseExpression at swftools/src/swfc.c:2576.
Swftools Swftools 0.9.2
7.8
CVSSv3
CVE-2024-22956
swftools 0.9.2 exists to contain a heap-use-after-free vulnerability via the function removeFromTo at swftools/src/swfc.c:838
Swftools Swftools 0.9.2
5.5
CVSSv3
CVE-2024-22957
swftools 0.9.2 exists to contain an Out-of-bounds Read vulnerability via the function dict_do_lookup in swftools/lib/q.c:1190.
Swftools Swftools 0.9.2
NA
CVE-2010-1516
Multiple integer overflows in SWFTools 0.9.1 allow remote malicious users to execute arbitrary code via (1) a crafted PNG file, related to the getPNG function in lib/png.c; or (2) a crafted JPEG file, related to the jpeg_load function in lib/jpeg.c.
Swftools Swftools 0.9.1
7.8
CVSSv3
CVE-2017-16793
The wav_convert2mono function in lib/wav.c in SWFTools 0.9.2 does not properly validate WAV data, which allows remote malicious users to cause a denial of service (incorrect malloc and heap-based buffer overflow) or possibly have unspecified other impact via a crafted file.
Swftools Swftools 0.9.2
5.5
CVSSv3
CVE-2017-16794
The png_load function in lib/png.c in SWFTools 0.9.2 does not properly validate a multiplication of width and bits-per-pixel values, which allows remote malicious users to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file, as demonst...
Swftools Swftools 0.9.2
7.8
CVSSv3
CVE-2017-16796
In SWFTools 0.9.2, the png_load function in lib/png.c does not check the return value of a realloc call, which allows remote malicious users to cause a denial of service (invalid write and application crash) or possibly have unspecified other impact via vectors involving an IDAT ...
Swftools Swftools 0.9.2
7.8
CVSSv3
CVE-2017-16797
In SWFTools 0.9.2, the png_load function in lib/png.c does not properly validate an alloclen_64 multiplication of width and height values, which allows remote malicious users to cause a denial of service (integer overflow, heap-based buffer overflow, and application crash) or pos...
Swftools Swftools 0.9.2
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-3380
CVE-2024-1694
local file inclusion
CVE-2024-5645
CVE-2024-24919
XSS
CVE-2024-36774
CVE-2024-21306
SQL
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
4
5
6
7
8
9
10
NEXT »