Описание
SWFTools 0.9.2 772e55a allows attackers to trigger a large memory-allocation attempt via a crafted document, as demonstrated by pdf2swf. This occurs in png_read_chunk in lib/png.c.
Ссылки
- ExploitIssue TrackingVendor Advisory
- ExploitIssue TrackingVendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:swftools:swftools:0.9.2:*:*:*:*:*:*:*
EPSS
Процентиль: 27%
0.00094
Низкий
5.5 Medium
CVSS3
Дефекты
CWE-787
CWE-787
Связанные уязвимости
CVSS3: 5.5
ubuntu
около 2 лет назад
SWFTools 0.9.2 772e55a allows attackers to trigger a large memory-allocation attempt via a crafted document, as demonstrated by pdf2swf. This occurs in png_read_chunk in lib/png.c.
CVSS3: 5.5
debian
около 2 лет назад
SWFTools 0.9.2 772e55a allows attackers to trigger a large memory-allo ...
CVSS3: 6.5
github
около 2 лет назад
SWFTools 0.9.2 772e55a allows attackers to trigger a large memory-allocation attempt via a crafted document, as demonstrated by pdf2swf. This occurs in png_read_chunk in lib/png.c.
EPSS
Процентиль: 27%
0.00094
Низкий
5.5 Medium
CVSS3
Дефекты
CWE-787
CWE-787