SWFTools 0.5.0

CPE Details

SWFTools 0.5.0
0.5.0
2020-06-23
14h45 +00:00
2020-06-23
14h45 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:swftools:swftools:0.5.0:*:*:*:*:*:*:*

Informations

Vendor

swftools

Product

swftools

Version

0.5.0

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2021-42204 2022-05-31 20h36 +00:00 An issue was discovered in swftools through 20201222. A heap-buffer-overflow exists in the function swf_GetBits() located in rfxswf.c. It allows an attacker to cause code execution.
7.8
Haute
CVE-2021-42203 2022-05-31 16h49 +00:00 An issue was discovered in swftools through 20201222. A heap-use-after-free exists in the function swf_FontExtract_DefineTextCallback() located in swftext.c. It allows an attacker to cause code execution.
7.8
Haute
CVE-2021-42202 2022-05-31 16h35 +00:00 An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function swf_DeleteFilter() located in swffilter.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-42201 2022-05-31 16h16 +00:00 An issue was discovered in swftools through 20201222. A heap-buffer-overflow exists in the function swf_GetD64() located in rfxswf.c. It allows an attacker to cause code execution.
7.8
Haute
CVE-2021-42200 2022-05-31 15h36 +00:00 An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function main() located in swfdump.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-42199 2022-05-31 15h25 +00:00 An issue was discovered in swftools through 20201222. A heap buffer overflow exists in the function swf_FontExtract_DefineTextCallback() located in swftext.c. It allows an attacker to cause code execution.
7.8
Haute
CVE-2021-42198 2022-05-31 15h19 +00:00 An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function swf_GetBits() located in rfxswf.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-42197 2022-05-31 14h51 +00:00 An issue was discovered in swftools through 20201222 through a memory leak in the swftools when swfdump is used. It allows an attacker to cause code execution.
7.8
Haute
CVE-2021-42196 2022-05-31 14h42 +00:00 An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function traits_parse() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-42195 2022-05-31 14h31 +00:00 An issue was discovered in swftools through 20201222. A heap-buffer-overflow exists in the function handleEditText() located in swfdump.c. It allows an attacker to cause code Execution.
7.8
Haute
CVE-2021-39585 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function traits_dump() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39588 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function swf_ReadABC() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39591 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function swf_GetShapeBoundingBox() located in swfshape.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39582 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function swf_GetPlaceObject() located in swfobject.c. It allows an attacker to cause code Execution.
7.8
Haute
CVE-2021-39593 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function swf_FontExtract_DefineFontInfo() located in swftext.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39564 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function swf_DumpActions() located in swfaction.c. It allows an attacker to cause code Execution.
7.8
Haute
CVE-2021-39558 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A stack-buffer-overflow exists in the function VectorGraphicOutputDev::drawGeneralImage() located in VectorGraphicOutputDev.cc. It allows an attacker to cause code Execution.
7.8
Haute
CVE-2021-39594 2021-09-20 13h27 +00:00 Other An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function updateusage() located in swftext.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39563 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function swf_DumpActions() located in swfaction.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39579 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function string_hash() located in q.c. It allows an attacker to cause code Execution.
7.8
Haute
CVE-2021-39587 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function swf_DumpABC() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39574 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function pool_read() located in pool.c. It allows an attacker to cause code Execution.
7.8
Haute
CVE-2021-39589 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function parse_metadata() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39592 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function pool_lookup_uint() located in pool.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39595 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A stack-buffer-overflow exists in the function rfx_alloc() located in mem.c. It allows an attacker to cause code Execution.
7.8
Haute
CVE-2021-39583 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function pool_lookup_string2() located in pool.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39569 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function OpAdvance() located in swfaction.c. It allows an attacker to cause code Execution.
7.8
Haute
CVE-2021-39577 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function main() located in swfdump.c. It allows an attacker to cause code Execution.
7.8
Haute
CVE-2021-39590 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function params_dump() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39553 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function grealloc() located in gmem.cc. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39554 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function Lexer::Lexer() located in Lexer.cc. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39555 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function InfoOutputDev::type3D0() located in InfoOutputDev.cc. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39556 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function InfoOutputDev::type3D1() located in InfoOutputDev.cc. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39584 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function namespace_set_hash() located in pool.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39559 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function GString::~GString() located in GString.cc. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39557 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function copyString() located in gmem.cc. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39561 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A stack-buffer-overflow exists in the function Gfx::opSetFillColorN() located in Gfx.cc. It allows an attacker to cause code Execution.
7.8
Haute
CVE-2021-39562 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function FileStream::makeSubStream() located in Stream.cc. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39597 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function code_dump2() located in code.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39575 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function dump_method() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39596 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function code_parse() located in code.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39598 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function callcode() located in code.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2017-7698 2017-05-10 12h00 +00:00 A Use After Free in the pdf2swf part of swftools 0.9.2 and earlier allows remote attackers to execute arbitrary code via a malformed PDF document, possibly a consequence of an error in Gfx.cc in Xpdf 3.02.
7.8
Haute
CVE-2017-8400 2017-05-01 19h00 +00:00 In SWFTools 0.9.2, an out-of-bounds write of heap data can occur in the function png_load() in lib/png.c:755. This issue can be triggered by a malformed PNG file that is mishandled by png2swf. Attackers could exploit this issue for DoS; it might cause arbitrary code execution.
8.8
Haute
CVE-2017-8401 2017-05-01 19h00 +00:00 In SWFTools 0.9.2, an out-of-bounds read of heap data can occur in the function png_load() in lib/png.c:724. This issue can be triggered by a malformed PNG file that is mishandled by png2swf. Attackers could exploit this issue for DoS.
6.5
Moyen