SWFTools 2013-04-09-1007

CPE Details

SWFTools 2013-04-09-1007
2013-04-09-1007
2017-07-10 11:30 +00:00
2021-08-10 12:21 +00:00

Alerte pour un CPE

Stay informed of any changes for a specific CPE.
Alert management

CPE Name: cpe:2.3:a:swftools:swftools:2013-04-09-1007:*:*:*:*:*:*:*

Informations

Vendor

swftools

Product

swftools

Version

2013-04-09-1007

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2021-42204 2022-05-31 20:36 +00:00 An issue was discovered in swftools through 20201222. A heap-buffer-overflow exists in the function swf_GetBits() located in rfxswf.c. It allows an attacker to cause code execution.
7.8
HIGH
CVE-2021-42203 2022-05-31 16:49 +00:00 An issue was discovered in swftools through 20201222. A heap-use-after-free exists in the function swf_FontExtract_DefineTextCallback() located in swftext.c. It allows an attacker to cause code execution.
7.8
HIGH
CVE-2021-42202 2022-05-31 16:35 +00:00 An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function swf_DeleteFilter() located in swffilter.c. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-42201 2022-05-31 16:16 +00:00 An issue was discovered in swftools through 20201222. A heap-buffer-overflow exists in the function swf_GetD64() located in rfxswf.c. It allows an attacker to cause code execution.
7.8
HIGH
CVE-2021-42200 2022-05-31 15:36 +00:00 An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function main() located in swfdump.c. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-42199 2022-05-31 15:25 +00:00 An issue was discovered in swftools through 20201222. A heap buffer overflow exists in the function swf_FontExtract_DefineTextCallback() located in swftext.c. It allows an attacker to cause code execution.
7.8
HIGH
CVE-2021-42198 2022-05-31 15:19 +00:00 An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function swf_GetBits() located in rfxswf.c. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-42197 2022-05-31 14:51 +00:00 An issue was discovered in swftools through 20201222 through a memory leak in the swftools when swfdump is used. It allows an attacker to cause code execution.
7.8
HIGH
CVE-2021-42196 2022-05-31 14:42 +00:00 An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function traits_parse() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-42195 2022-05-31 14:31 +00:00 An issue was discovered in swftools through 20201222. A heap-buffer-overflow exists in the function handleEditText() located in swfdump.c. It allows an attacker to cause code Execution.
7.8
HIGH
CVE-2021-39585 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function traits_dump() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39588 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function swf_ReadABC() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39591 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function swf_GetShapeBoundingBox() located in swfshape.c. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39582 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function swf_GetPlaceObject() located in swfobject.c. It allows an attacker to cause code Execution.
7.8
HIGH
CVE-2021-39593 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function swf_FontExtract_DefineFontInfo() located in swftext.c. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39564 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function swf_DumpActions() located in swfaction.c. It allows an attacker to cause code Execution.
7.8
HIGH
CVE-2021-39558 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A stack-buffer-overflow exists in the function VectorGraphicOutputDev::drawGeneralImage() located in VectorGraphicOutputDev.cc. It allows an attacker to cause code Execution.
7.8
HIGH
CVE-2021-39594 2021-09-20 13:27 +00:00 Other An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function updateusage() located in swftext.c. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39563 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function swf_DumpActions() located in swfaction.c. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39579 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function string_hash() located in q.c. It allows an attacker to cause code Execution.
7.8
HIGH
CVE-2021-39587 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function swf_DumpABC() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39574 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function pool_read() located in pool.c. It allows an attacker to cause code Execution.
7.8
HIGH
CVE-2021-39589 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function parse_metadata() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39592 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function pool_lookup_uint() located in pool.c. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39595 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A stack-buffer-overflow exists in the function rfx_alloc() located in mem.c. It allows an attacker to cause code Execution.
7.8
HIGH
CVE-2021-39583 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function pool_lookup_string2() located in pool.c. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39569 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function OpAdvance() located in swfaction.c. It allows an attacker to cause code Execution.
7.8
HIGH
CVE-2021-39577 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function main() located in swfdump.c. It allows an attacker to cause code Execution.
7.8
HIGH
CVE-2021-39590 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function params_dump() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39553 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function grealloc() located in gmem.cc. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39554 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function Lexer::Lexer() located in Lexer.cc. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39555 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function InfoOutputDev::type3D0() located in InfoOutputDev.cc. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39556 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function InfoOutputDev::type3D1() located in InfoOutputDev.cc. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39584 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function namespace_set_hash() located in pool.c. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39559 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function GString::~GString() located in GString.cc. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39557 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function copyString() located in gmem.cc. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39561 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A stack-buffer-overflow exists in the function Gfx::opSetFillColorN() located in Gfx.cc. It allows an attacker to cause code Execution.
7.8
HIGH
CVE-2021-39562 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function FileStream::makeSubStream() located in Stream.cc. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39597 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function code_dump2() located in code.c. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39575 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function dump_method() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39596 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function code_parse() located in code.c. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2021-39598 2021-09-20 13:27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function callcode() located in code.c. It allows an attacker to cause Denial of Service.
5.5
MEDIUM
CVE-2017-8420 2017-07-05 17:00 +00:00 SWFTools 2013-04-09-1007 on Windows has a "Data from Faulting Address controls Branch Selection starting at image00000000_00400000+0x0000000000003e71" issue. This issue can be triggered by a malformed TTF file that is mishandled by font2swf. Attackers could exploit this issue for DoS (Access Violation).
6.5
MEDIUM
CVE-2017-9924 2017-07-05 17:00 +00:00 In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of service via a crafted file, related to a "User Mode Write AV starting at image00000000_00400000+0x000000000001b72a."
8.8
HIGH
CVE-2017-9925 2017-07-05 17:00 +00:00 In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of service via a crafted file, related to a "User Mode Write AV near NULL starting at wow64!Wow64NotifyDebugger+0x000000000000001d."
8.8
HIGH
CVE-2017-9926 2017-07-05 17:00 +00:00 In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted file, related to a "Read Access Violation starting at image00000000_00400000+0x000000000001b596."
8.8
HIGH
CVE-2017-9927 2017-07-05 17:00 +00:00 In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted file, related to a "Read Access Violation starting at image00000000_00400000+0x000000000001b5fe."
8.8
HIGH
Click on the button to the left (OFF), to authorize the inscription of cookie improving the functionalities of the site. Click on the button to the left (Accept all), to unauthorize the inscription of cookie improving the functionalities of the site.