6.8

CVE-2010-1513

Multiple integer overflows in src/image.c in Ziproxy before 3.0.1 allow remote attackers to execute arbitrary code via (1) a large JPG image, related to the jpg2bitmap function or (2) a large PNG image, related to the png2bitmap function, leading to heap-based buffer overflows.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Daniel Mealha CabritaZiproxy Version <= 3.0.0
Daniel Mealha CabritaZiproxy Version1.2 Updateb
Daniel Mealha CabritaZiproxy Version1.3 Updateb
Daniel Mealha CabritaZiproxy Version1.3 Updatebeta
Daniel Mealha CabritaZiproxy Version1.3 Updatec
Daniel Mealha CabritaZiproxy Version1.3 Updated
Daniel Mealha CabritaZiproxy Version1.4.0
Daniel Mealha CabritaZiproxy Version1.5.0
Daniel Mealha CabritaZiproxy Version1.5.1
Daniel Mealha CabritaZiproxy Version1.5.2
Daniel Mealha CabritaZiproxy Version1.9.0
Daniel Mealha CabritaZiproxy Version2.0.0
Daniel Mealha CabritaZiproxy Version2.1.0
Daniel Mealha CabritaZiproxy Version2.1.1
Daniel Mealha CabritaZiproxy Version2.2.0
Daniel Mealha CabritaZiproxy Version2.2.1
Daniel Mealha CabritaZiproxy Version2.2.2
Daniel Mealha CabritaZiproxy Version2.3.0
Daniel Mealha CabritaZiproxy Version2.3.5 Updatebeta
Daniel Mealha CabritaZiproxy Version2.4.0
Daniel Mealha CabritaZiproxy Version2.4.1
Daniel Mealha CabritaZiproxy Version2.4.2
Daniel Mealha CabritaZiproxy Version2.4.3
Daniel Mealha CabritaZiproxy Version2.4.8 Updatebeta
Daniel Mealha CabritaZiproxy Version2.4.8 Updatebeta2
Daniel Mealha CabritaZiproxy Version2.5.0
Daniel Mealha CabritaZiproxy Version2.5.1
Daniel Mealha CabritaZiproxy Version2.5.2
Daniel Mealha CabritaZiproxy Version2.5.9 Updatebeta
Daniel Mealha CabritaZiproxy Version2.6.0
Daniel Mealha CabritaZiproxy Version2.6.9 Updatebeta
Daniel Mealha CabritaZiproxy Version2.6.9 Updatebeta2
Daniel Mealha CabritaZiproxy Version2.7.0
Daniel Mealha CabritaZiproxy Version2.7.1
Daniel Mealha CabritaZiproxy Version2.7.2
Daniel Mealha CabritaZiproxy Version2.7.9 Updatebeta
Daniel Mealha CabritaZiproxy Version2.7.9 Updatebeta2
Daniel Mealha CabritaZiproxy Version2.7.9 Updatebeta3
Daniel Mealha CabritaZiproxy Version3.0.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 3.2% 0.858
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.8 8.6 6.4
AV:N/AC:M/Au:N/C:P/I:P/A:P
Es wurden noch keine Informationen zu CWE veröffentlicht.