Dia

Dia

6 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.4%
  • Veröffentlicht 28.01.2009 11:30:00
  • Zuletzt bearbeitet 16.06.2026 23:01:21

Untrusted search path vulnerability in the Python plugin in Dia 0.96.1, and possibly other versions, allows local users to execute arbitrary code via a Trojan horse Python file in the current working directory, related to a vulnerability in the PySys...

  • EPSS 1.16%
  • Veröffentlicht 26.06.2007 18:30:00
  • Zuletzt bearbeitet 16.06.2026 22:41:58

Multiple unspecified vulnerabilities in Dia before 0.96.1-6 have unspecified attack vectors and impact, probably involving the use of vulnerable FreeType libraries that contain CVE-2007-2754 and/or CVE-2007-1351.

  • EPSS 2.2%
  • Veröffentlicht 28.05.2006 10:06:00
  • Zuletzt bearbeitet 16.06.2026 22:25:02

Multiple unspecified format string vulnerabilities in Dia have unspecified impact and attack vectors, a different set of issues than CVE-2006-2480.

Exploit
  • EPSS 7.63%
  • Veröffentlicht 19.05.2006 21:02:00
  • Zuletzt bearbeitet 16.06.2026 22:25:05

Format string vulnerability in Dia 0.94 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code by triggering errors or warnings, as demonstrated via format string specifiers in a .bmp filename. NOTE: ...

  • EPSS 2.41%
  • Veröffentlicht 30.03.2006 23:02:00
  • Zuletzt bearbeitet 16.06.2026 22:23:11

Multiple buffer overflows in the xfig import code (xfig-import.c) in Dia 0.87 and later before 0.95-pre6 allow user-assisted attackers to have an unknown impact via a crafted xfig file, possibly involving an invalid (1) color index, (2) number of poi...

Exploit
  • EPSS 2.61%
  • Veröffentlicht 05.10.2005 21:02:00
  • Zuletzt bearbeitet 16.06.2026 22:15:59

The Python SVG import plugin (diasvg_import.py) for DIA 0.94 and earlier allows user-assisted attackers to execute arbitrary commands via a crafted SVG file.