CVE-2021-39575
- EPSS 0.15%
- Veröffentlicht 20.09.2021 16:15:13
- Zuletzt bearbeitet 21.11.2024 06:19:43
An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function dump_method() located in abc.c. It allows an attacker to cause Denial of Service.
CVE-2021-39577
- EPSS 0.45%
- Veröffentlicht 20.09.2021 16:15:13
- Zuletzt bearbeitet 21.11.2024 06:19:44
An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function main() located in swfdump.c. It allows an attacker to cause code Execution.
CVE-2021-39579
- EPSS 0.45%
- Veröffentlicht 20.09.2021 16:15:13
- Zuletzt bearbeitet 21.11.2024 06:19:44
An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function string_hash() located in q.c. It allows an attacker to cause code Execution.
CVE-2021-39582
- EPSS 0.45%
- Veröffentlicht 20.09.2021 16:15:13
- Zuletzt bearbeitet 21.11.2024 06:19:44
An issue was discovered in swftools through 20200710. A heap-buffer-overflow exists in the function swf_GetPlaceObject() located in swfobject.c. It allows an attacker to cause code Execution.
CVE-2021-39583
- EPSS 0.15%
- Veröffentlicht 20.09.2021 16:15:13
- Zuletzt bearbeitet 21.11.2024 06:19:44
An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function pool_lookup_string2() located in pool.c. It allows an attacker to cause Denial of Service.
CVE-2021-39584
- EPSS 0.15%
- Veröffentlicht 20.09.2021 16:15:13
- Zuletzt bearbeitet 21.11.2024 06:19:44
An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function namespace_set_hash() located in pool.c. It allows an attacker to cause Denial of Service.
CVE-2021-39585
- EPSS 0.15%
- Veröffentlicht 20.09.2021 16:15:13
- Zuletzt bearbeitet 21.11.2024 06:19:44
An issue was discovered in swftools through 20200710. A NULL pointer dereference exists in the function traits_dump() located in abc.c. It allows an attacker to cause Denial of Service.
CVE-2017-16890
- EPSS 0.17%
- Veröffentlicht 09.07.2018 11:29:00
- Zuletzt bearbeitet 21.11.2024 03:17:11
SWFTools 0.9.2 has a divide-by-zero error in the wav_convert2mono function in lib/wav.c because the align value may be zero.
CVE-2017-16868
- EPSS 0.19%
- Veröffentlicht 17.11.2017 09:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In SWFTools 0.9.2, the wav_convert2mono function in lib/wav.c does not properly restrict a multiplication within a malloc call, which allows remote attackers to cause a denial of service (integer overflow and NULL pointer dereference) via a crafted W...
CVE-2017-1000174
- EPSS 0.15%
- Veröffentlicht 17.11.2017 01:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In SWFTools, an address access exception was found in swfdump swf_GetBits().