SWFTools 2013-04-09-1007

CPE Details

SWFTools 2013-04-09-1007
2013-04-09-1007
2017-07-10
11h30 +00:00
2021-08-10
12h21 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:swftools:swftools:2013-04-09-1007:*:*:*:*:*:*:*

Informations

Vendor

swftools

Product

swftools

Version

2013-04-09-1007

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2021-42204 2022-05-31 20h36 +00:00 An issue was discovered in swftools through 20201222. A heap-buffer-overflow exists in the function swf_GetBits() located in rfxswf.c. It allows an attacker to cause code execution.
7.8
Haute
CVE-2021-42203 2022-05-31 16h49 +00:00 An issue was discovered in swftools through 20201222. A heap-use-after-free exists in the function swf_FontExtract_DefineTextCallback() located in swftext.c. It allows an attacker to cause code execution.
7.8
Haute
CVE-2021-42202 2022-05-31 16h35 +00:00 An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function swf_DeleteFilter() located in swffilter.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-42201 2022-05-31 16h16 +00:00 An issue was discovered in swftools through 20201222. A heap-buffer-overflow exists in the function swf_GetD64() located in rfxswf.c. It allows an attacker to cause code execution.
7.8
Haute
CVE-2021-42200 2022-05-31 15h36 +00:00 An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function main() located in swfdump.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-42199 2022-05-31 15h25 +00:00 An issue was discovered in swftools through 20201222. A heap buffer overflow exists in the function swf_FontExtract_DefineTextCallback() located in swftext.c. It allows an attacker to cause code execution.
7.8
Haute
CVE-2021-42198 2022-05-31 15h19 +00:00 An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function swf_GetBits() located in rfxswf.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-42197 2022-05-31 14h51 +00:00 An issue was discovered in swftools through 20201222 through a memory leak in the swftools when swfdump is used. It allows an attacker to cause code execution.
7.8
Haute
CVE-2021-42196 2022-05-31 14h42 +00:00 An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function traits_parse() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-42195 2022-05-31 14h31 +00:00 An issue was discovered in swftools through 20201222. A heap-buffer-overflow exists in the function handleEditText() located in swfdump.c. It allows an attacker to cause code Execution.
7.8
Haute
CVE-2021-39585 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function traits_dump() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39588 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function swf_ReadABC() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39591 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function swf_GetShapeBoundingBox() located in swfshape.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39582 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function swf_GetPlaceObject() located in swfobject.c. It allows an attacker to cause code Execution.
7.8
Haute
CVE-2021-39593 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function swf_FontExtract_DefineFontInfo() located in swftext.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39564 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function swf_DumpActions() located in swfaction.c. It allows an attacker to cause code Execution.
7.8
Haute
CVE-2021-39558 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A stack-buffer-overflow exists in the function VectorGraphicOutputDev::drawGeneralImage() located in VectorGraphicOutputDev.cc. It allows an attacker to cause code Execution.
7.8
Haute
CVE-2021-39594 2021-09-20 13h27 +00:00 Other An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function updateusage() located in swftext.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39563 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function swf_DumpActions() located in swfaction.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39579 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function string_hash() located in q.c. It allows an attacker to cause code Execution.
7.8
Haute
CVE-2021-39587 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function swf_DumpABC() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39574 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function pool_read() located in pool.c. It allows an attacker to cause code Execution.
7.8
Haute
CVE-2021-39589 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function parse_metadata() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39592 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function pool_lookup_uint() located in pool.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39595 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A stack-buffer-overflow exists in the function rfx_alloc() located in mem.c. It allows an attacker to cause code Execution.
7.8
Haute
CVE-2021-39583 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function pool_lookup_string2() located in pool.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39569 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function OpAdvance() located in swfaction.c. It allows an attacker to cause code Execution.
7.8
Haute
CVE-2021-39577 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function main() located in swfdump.c. It allows an attacker to cause code Execution.
7.8
Haute
CVE-2021-39590 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function params_dump() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39553 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function grealloc() located in gmem.cc. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39554 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function Lexer::Lexer() located in Lexer.cc. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39555 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function InfoOutputDev::type3D0() located in InfoOutputDev.cc. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39556 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function InfoOutputDev::type3D1() located in InfoOutputDev.cc. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39584 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function namespace_set_hash() located in pool.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39559 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function GString::~GString() located in GString.cc. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39557 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function copyString() located in gmem.cc. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39561 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A stack-buffer-overflow exists in the function Gfx::opSetFillColorN() located in Gfx.cc. It allows an attacker to cause code Execution.
7.8
Haute
CVE-2021-39562 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function FileStream::makeSubStream() located in Stream.cc. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39597 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function code_dump2() located in code.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39575 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function dump_method() located in abc.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39596 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function code_parse() located in code.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2021-39598 2021-09-20 13h27 +00:00 An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function callcode() located in code.c. It allows an attacker to cause Denial of Service.
5.5
Moyen
CVE-2017-8420 2017-07-05 17h00 +00:00 SWFTools 2013-04-09-1007 on Windows has a "Data from Faulting Address controls Branch Selection starting at image00000000_00400000+0x0000000000003e71" issue. This issue can be triggered by a malformed TTF file that is mishandled by font2swf. Attackers could exploit this issue for DoS (Access Violation).
6.5
Moyen
CVE-2017-9924 2017-07-05 17h00 +00:00 In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of service via a crafted file, related to a "User Mode Write AV starting at image00000000_00400000+0x000000000001b72a."
8.8
Haute
CVE-2017-9925 2017-07-05 17h00 +00:00 In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of service via a crafted file, related to a "User Mode Write AV near NULL starting at wow64!Wow64NotifyDebugger+0x000000000000001d."
8.8
Haute
CVE-2017-9926 2017-07-05 17h00 +00:00 In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted file, related to a "Read Access Violation starting at image00000000_00400000+0x000000000001b596."
8.8
Haute
CVE-2017-9927 2017-07-05 17h00 +00:00 In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted file, related to a "Read Access Violation starting at image00000000_00400000+0x000000000001b5fe."
8.8
Haute