Show filters
118 Total Results
Displaying 11-20 of 118
Sort by:
Attacker Value
Unknown

CVE-2024-22562

Disclosure Date: January 19, 2024 (last updated January 26, 2024)
swftools 0.9.2 was discovered to contain a Stack Buffer Underflow via the function dict_foreach_keyvalue at swftools/lib/q.c.
Attacker Value
Unknown

CVE-2023-37644

Disclosure Date: January 11, 2024 (last updated January 19, 2024)
SWFTools 0.9.2 772e55a allows attackers to trigger a large memory-allocation attempt via a crafted document, as demonstrated by pdf2swf. This occurs in png_read_chunk in lib/png.c.
Attacker Value
Unknown

CVE-2023-29950

Disclosure Date: April 27, 2023 (last updated October 08, 2023)
swfrender v0.9.2 was discovered to contain a heap buffer overflow in the function enumerateUsedIDs_fillstyle at modules/swftools.c
Attacker Value
Unknown

CVE-2023-26991

Disclosure Date: April 04, 2023 (last updated October 08, 2023)
SWFTools v0.9.2 was discovered to contain a stack-use-after-scope in the swf_ReadSWF2 function in lib/rfxswf.c.
Attacker Value
Unknown

CVE-2023-27249

Disclosure Date: March 23, 2023 (last updated October 08, 2023)
swfdump v0.9.2 was discovered to contain a heap buffer overflow in the function swf_GetPlaceObject at swfobject.c.
Attacker Value
Unknown

CVE-2022-46440

Disclosure Date: February 24, 2023 (last updated October 08, 2023)
ttftool v0.9.2 was discovered to contain a segmentation violation via the readU16 function at ttf.c.
Attacker Value
Unknown

CVE-2022-35081

Disclosure Date: October 13, 2022 (last updated February 24, 2025)
SWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via png_read_header at /src/png2swf.c.
Attacker Value
Unknown

CVE-2022-35080

Disclosure Date: October 13, 2022 (last updated February 24, 2025)
SWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via png_load at /lib/png.c.
Attacker Value
Unknown

CVE-2022-35099

Disclosure Date: September 23, 2022 (last updated February 24, 2025)
SWFTools commit 772e55a2 was discovered to contain a stack overflow via ImageStream::getPixel(unsigned char*) at /xpdf/Stream.cc.
Attacker Value
Unknown

CVE-2022-35098

Disclosure Date: September 23, 2022 (last updated February 24, 2025)
SWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via GfxICCBasedColorSpace::getDefaultColor(GfxColor*) at /xpdf/GfxState.cc.