Google

Picasa

11 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 24.93%
  • Veröffentlicht 17.11.2015 15:59:22
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Integer overflow in Google Picasa before 3.9.140 Build 259 allows remote attackers to execute arbitrary code via the CAMF section in a FOVb image, which triggers a heap-based buffer overflow.

  • EPSS 17.06%
  • Veröffentlicht 09.11.2015 16:59:13
  • Zuletzt bearbeitet 06.05.2026 22:30:45

Integer overflow in Google Picasa 3.9.140 Build 239 and Build 248 allows remote attackers to execute arbitrary code via unspecified vectors related to "phase one 0x412 tag," which triggers a heap-based buffer overflow.

  • EPSS 2.79%
  • Veröffentlicht 09.01.2014 00:55:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Integer underflow in Picasa3.exe in Google Picasa before 3.9.0 Build 137.69 allows remote attackers to execute arbitrary code via a crafted JPEG tag that triggers a heap-based buffer overflow, as demonstrated using a Canon RAW CR2 file with a large J...

  • EPSS 2.79%
  • Veröffentlicht 09.01.2014 00:55:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Integer overflow in Picasa3.exe in Google Picasa before 3.9.0 Build 137.69 allows remote attackers to execute arbitrary code via a long TIFF tag that triggers a heap-based buffer overflow, as demonstrated using a Canon RAW CR2 file with a long TIFF S...

  • EPSS 0.71%
  • Veröffentlicht 09.01.2014 00:55:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Picasa3.exe in Google Picasa before 3.9.0 Build 137.69 allows remote attackers to trigger memory corruption via a crafted TIFF tag, as demonstrated using a KDC file with a DSLR-A100 model and certain sequences of tags.

  • EPSS 2.79%
  • Veröffentlicht 09.01.2014 00:55:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Stack-based buffer overflow in Picasa3.exe in Google Picasa before 3.9.0 Build 137.69 might allow remote attackers to execute arbitrary code via a crafted RAW file, as demonstrated using a KDC file with a certain size.

  • EPSS 3.28%
  • Veröffentlicht 28.07.2011 18:55:02
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Google Picasa before 3.6 Build 105.67 does not properly handle invalid properties in JPEG images, which allows remote attackers to execute arbitrary code via a crafted image file.

  • EPSS 0.03%
  • Veröffentlicht 28.03.2011 16:55:04
  • Zuletzt bearbeitet 29.04.2026 01:13:23

Untrusted search path vulnerability in the Locate on Disk feature in Google Picasa before 3.8 allows local users to gain privileges via a Trojan horse executable file in the current working directory.

  • EPSS 0.22%
  • Veröffentlicht 12.09.2007 20:17:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Google Picasa allows remote attackers to read image files stored by Picasa via unspecified vectors involving a picasa:// URI. NOTE: this information is based upon a vague pre-advisory.

  • EPSS 0.16%
  • Veröffentlicht 11.09.2007 19:17:00
  • Zuletzt bearbeitet 23.04.2026 00:35:47

Multiple buffer overflows in Google Picasa have unspecified attack vectors and impact. NOTE: this information is based upon a vague pre-advisory.