6.8
CVE-2010-1513
- EPSS 3.3%
- Veröffentlicht 26.05.2010 19:30:01
- Zuletzt bearbeitet 16.06.2026 23:18:32
- Quelle PSIRT-CNA@flexerasoftware.com
- CVE-Watchlists
- Unerledigt
Multiple integer overflows in src/image.c in Ziproxy before 3.0.1 allow remote attackers to execute arbitrary code via (1) a large JPG image, related to the jpg2bitmap function or (2) a large PNG image, related to the png2bitmap function, leading to heap-based buffer overflows.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Daniel Mealha Cabrita ≫ Ziproxy Version <= 3.0.0
Daniel Mealha Cabrita ≫ Ziproxy Version1.1
Daniel Mealha Cabrita ≫ Ziproxy Version1.2
Daniel Mealha Cabrita ≫ Ziproxy Version1.2 Updateb
Daniel Mealha Cabrita ≫ Ziproxy Version1.3
Daniel Mealha Cabrita ≫ Ziproxy Version1.3 Updateb
Daniel Mealha Cabrita ≫ Ziproxy Version1.3 Updatebeta
Daniel Mealha Cabrita ≫ Ziproxy Version1.3 Updatec
Daniel Mealha Cabrita ≫ Ziproxy Version1.3 Updated
Daniel Mealha Cabrita ≫ Ziproxy Version1.4.0
Daniel Mealha Cabrita ≫ Ziproxy Version1.5.0
Daniel Mealha Cabrita ≫ Ziproxy Version1.5.1
Daniel Mealha Cabrita ≫ Ziproxy Version1.5.2
Daniel Mealha Cabrita ≫ Ziproxy Version1.9.0
Daniel Mealha Cabrita ≫ Ziproxy Version2.0.0
Daniel Mealha Cabrita ≫ Ziproxy Version2.1.0
Daniel Mealha Cabrita ≫ Ziproxy Version2.1.1
Daniel Mealha Cabrita ≫ Ziproxy Version2.2.0
Daniel Mealha Cabrita ≫ Ziproxy Version2.2.1
Daniel Mealha Cabrita ≫ Ziproxy Version2.2.2
Daniel Mealha Cabrita ≫ Ziproxy Version2.3.0
Daniel Mealha Cabrita ≫ Ziproxy Version2.3.5 Updatebeta
Daniel Mealha Cabrita ≫ Ziproxy Version2.4.0
Daniel Mealha Cabrita ≫ Ziproxy Version2.4.1
Daniel Mealha Cabrita ≫ Ziproxy Version2.4.2
Daniel Mealha Cabrita ≫ Ziproxy Version2.4.3
Daniel Mealha Cabrita ≫ Ziproxy Version2.4.8 Updatebeta
Daniel Mealha Cabrita ≫ Ziproxy Version2.4.8 Updatebeta2
Daniel Mealha Cabrita ≫ Ziproxy Version2.5.0
Daniel Mealha Cabrita ≫ Ziproxy Version2.5.1
Daniel Mealha Cabrita ≫ Ziproxy Version2.5.2
Daniel Mealha Cabrita ≫ Ziproxy Version2.5.9 Updatebeta
Daniel Mealha Cabrita ≫ Ziproxy Version2.6.0
Daniel Mealha Cabrita ≫ Ziproxy Version2.6.9 Updatebeta
Daniel Mealha Cabrita ≫ Ziproxy Version2.6.9 Updatebeta2
Daniel Mealha Cabrita ≫ Ziproxy Version2.7.0
Daniel Mealha Cabrita ≫ Ziproxy Version2.7.1
Daniel Mealha Cabrita ≫ Ziproxy Version2.7.2
Daniel Mealha Cabrita ≫ Ziproxy Version2.7.9 Updatebeta
Daniel Mealha Cabrita ≫ Ziproxy Version2.7.9 Updatebeta2
Daniel Mealha Cabrita ≫ Ziproxy Version2.7.9 Updatebeta3
Daniel Mealha Cabrita ≫ Ziproxy Version3.0.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 3.3% | 0.869 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.8 | 8.6 | 6.4 |
AV:N/AC:M/Au:N/C:P/I:P/A:P
|
http://secunia.com/advisories/39941
http://secunia.com/secunia_research/2010-75/
http://www.securityfocus.com/archive/1/511424/100/0/threaded
http://ziproxy.sourceforge.net/#news