Icoutils Project

Icoutils

7 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.08%
  • Published 04.11.2019 21:15:11
  • Last modified 21.11.2024 03:27:24

Integer overflow in the check_offset function in b/wrestool/fileread.c in icoutils before 0.31.1 allows local users to cause a denial of service (process crash) and execute arbitrary code via a crafted executable.

  • EPSS 0.23%
  • Published 04.11.2019 21:15:11
  • Last modified 21.11.2024 03:27:24

The extract_group_icon_cursor_resource in wrestool/extract.c in icoutils before 0.31.1 can access unallocated memory, which allows local users to cause a denial of service (process crash) and execute arbitrary code via a crafted executable.

  • EPSS 0.23%
  • Published 04.11.2019 21:15:11
  • Last modified 21.11.2024 03:27:24

Integer overflow in the extract_group_icon_cursor_resource function in b/wrestool/extract.c in icoutils before 0.31.1 allows local users to cause a denial of service (process crash) or execute arbitrary code via a crafted executable file.

  • EPSS 1.65%
  • Published 22.08.2017 18:29:00
  • Last modified 20.04.2025 01:37:25

Integer overflow in the wrestool program in icoutils before 0.31.1 allows remote attackers to cause a denial of service (memory corruption) via a crafted executable, which triggers a denial of service (application crash) or the possibility of executi...

Exploit
  • EPSS 0.28%
  • Published 16.02.2017 11:59:00
  • Last modified 20.04.2025 01:37:25

An issue was discovered in icoutils 0.31.1. A buffer overflow was observed in the "decode_ne_resource_id" function in the "restable.c" source file. This is happening because the "len" parameter for memcpy is not checked for size and thus becomes a ne...

Exploit
  • EPSS 0.35%
  • Published 16.02.2017 11:59:00
  • Last modified 20.04.2025 01:37:25

An issue was discovered in icoutils 0.31.1. A buffer overflow was observed in the "extract_icons" function in the "extract.c" source file. This issue can be triggered by processing a corrupted ico file and will result in an icotool crash.

Exploit
  • EPSS 0.35%
  • Published 16.02.2017 11:59:00
  • Last modified 20.04.2025 01:37:25

An issue was discovered in icoutils 0.31.1. An out-of-bounds read leading to a buffer overflow was observed in the "simple_vec" function in the "extract.c" source file. This affects icotool.