Show filters
14 Total Results
Displaying 1-10 of 14
Sort by:
Attacker Value
Unknown
CVE-2015-8221
Disclosure Date: November 17, 2015 (last updated October 05, 2023)
Integer overflow in Google Picasa before 3.9.140 Build 259 allows remote attackers to execute arbitrary code via the CAMF section in a FOVb image, which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2015-8096
Disclosure Date: November 09, 2015 (last updated October 05, 2023)
Integer overflow in Google Picasa 3.9.140 Build 239 and Build 248 allows remote attackers to execute arbitrary code via unspecified vectors related to "phase one 0x412 tag," which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2014-4591
Disclosure Date: July 02, 2014 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in picasa_upload.php in the WP-Picasa-Image plugin 1.0 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the post_id parameter.
0
Attacker Value
Unknown
CVE-2013-5349
Disclosure Date: January 09, 2014 (last updated October 05, 2023)
Integer underflow in Picasa3.exe in Google Picasa before 3.9.0 Build 137.69 allows remote attackers to execute arbitrary code via a crafted JPEG tag that triggers a heap-based buffer overflow, as demonstrated using a Canon RAW CR2 file with a large JPEG tag value and a small size.
0
Attacker Value
Unknown
CVE-2013-5359
Disclosure Date: January 09, 2014 (last updated October 05, 2023)
Stack-based buffer overflow in Picasa3.exe in Google Picasa before 3.9.0 Build 137.69 might allow remote attackers to execute arbitrary code via a crafted RAW file, as demonstrated using a KDC file with a certain size.
0
Attacker Value
Unknown
CVE-2013-5358
Disclosure Date: January 09, 2014 (last updated October 05, 2023)
Picasa3.exe in Google Picasa before 3.9.0 Build 137.69 allows remote attackers to trigger memory corruption via a crafted TIFF tag, as demonstrated using a KDC file with a DSLR-A100 model and certain sequences of tags.
0
Attacker Value
Unknown
CVE-2013-5357
Disclosure Date: January 09, 2014 (last updated October 05, 2023)
Integer overflow in Picasa3.exe in Google Picasa before 3.9.0 Build 137.69 allows remote attackers to execute arbitrary code via a long TIFF tag that triggers a heap-based buffer overflow, as demonstrated using a Canon RAW CR2 file with a long TIFF StripByteCounts tag.
0
Attacker Value
Unknown
CVE-2011-2747
Disclosure Date: July 28, 2011 (last updated October 04, 2023)
Google Picasa before 3.6 Build 105.67 does not properly handle invalid properties in JPEG images, which allows remote attackers to execute arbitrary code via a crafted image file.
0
Attacker Value
Unknown
CVE-2011-0458
Disclosure Date: March 28, 2011 (last updated October 04, 2023)
Untrusted search path vulnerability in the Locate on Disk feature in Google Picasa before 3.8 allows local users to gain privileges via a Trojan horse executable file in the current working directory.
0
Attacker Value
Unknown
CVE-2010-2507
Disclosure Date: June 28, 2010 (last updated October 04, 2023)
Directory traversal vulnerability in the Picasa2Gallery (com_picasa2gallery) component 1.2.8 and earlier for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot dot) in the controller parameter to index.php.
0