Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
swftools vulnerabilities and exploits
(subscribe to this query)
5.5
CVSSv3
CVE-2024-22914
A heap-use-after-free was found in SWFTools v0.9.2, in the function input at lex.swf5.c:2620. It allows an malicious user to cause denial of service.
Swftools Swftools 0.9.2
7.8
CVSSv3
CVE-2024-22915
A heap-use-after-free was found in SWFTools v0.9.2, in the function swf_DeleteTag at rfxswf.c:1193. It allows an malicious user to cause code execution.
Swftools Swftools 0.9.2
7.8
CVSSv3
CVE-2024-22919
swftools0.9.2 exists to contain a global-buffer-overflow vulnerability via the function parseExpression at swftools/src/swfc.c:2587.
Swftools Swftools 0.9.2
7.8
CVSSv3
CVE-2024-22920
swftools 0.9.2 exists to contain a heap-use-after-free via the function bufferWriteData in swftools/lib/action/compile.c.
Swftools Swftools 0.9.2
7.8
CVSSv3
CVE-2024-22955
swftools 0.9.2 exists to contain a stack-buffer-underflow vulnerability via the function parseExpression at swftools/src/swfc.c:2576.
Swftools Swftools 0.9.2
7.8
CVSSv3
CVE-2024-22956
swftools 0.9.2 exists to contain a heap-use-after-free vulnerability via the function removeFromTo at swftools/src/swfc.c:838
Swftools Swftools 0.9.2
5.5
CVSSv3
CVE-2024-22957
swftools 0.9.2 exists to contain an Out-of-bounds Read vulnerability via the function dict_do_lookup in swftools/lib/q.c:1190.
Swftools Swftools 0.9.2
7.8
CVSSv3
CVE-2017-16793
The wav_convert2mono function in lib/wav.c in SWFTools 0.9.2 does not properly validate WAV data, which allows remote malicious users to cause a denial of service (incorrect malloc and heap-based buffer overflow) or possibly have unspecified other impact via a crafted file.
Swftools Swftools 0.9.2
5.5
CVSSv3
CVE-2017-16794
The png_load function in lib/png.c in SWFTools 0.9.2 does not properly validate a multiplication of width and bits-per-pixel values, which allows remote malicious users to cause a denial of service (heap-based buffer over-read and application crash) via a crafted file, as demonst...
Swftools Swftools 0.9.2
7.8
CVSSv3
CVE-2017-16796
In SWFTools 0.9.2, the png_load function in lib/png.c does not check the return value of a realloc call, which allows remote malicious users to cause a denial of service (invalid write and application crash) or possibly have unspecified other impact via vectors involving an IDAT ...
Swftools Swftools 0.9.2
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
authentication bypass
CVE-2024-30051
remote
CVE-2024-27954
CVE-2023-51483
CVE-2023-47782
SSRF
CVE-2024-24715
CVE-2023-52424
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
5
6
7
8
9
10
NEXT »