Логотип exploitDog
bind:"CVE-2018-25011" OR bind:"CVE-2020-36328" OR bind:"CVE-2020-36329"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2018-25011" OR bind:"CVE-2020-36328" OR bind:"CVE-2020-36329"

Количество 28

Количество 28

redhat логотип

CVE-2020-36329

почти 6 лет назад

A flaw was found in libwebp in versions before 1.0.1. A use-after-free was found due to a thread being killed too early. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2020-36329

больше 4 лет назад

A flaw was found in libwebp in versions before 1.0.1. A use-after-free was found due to a thread being killed too early. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVSS3: 9.8
EPSS: Низкий
msrc логотип

CVE-2020-36329

больше 4 лет назад

A flaw was found in libwebp in versions before 1.0.1. A use-after-free was found due to a thread being killed too early. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2020-36329

больше 4 лет назад

A flaw was found in libwebp in versions before 1.0.1. A use-after-free ...

CVSS3: 9.8
EPSS: Низкий
github логотип

GHSA-jxwm-333p-5cwx

больше 3 лет назад

A flaw was found in libwebp in versions before 1.0.1. A heap-based buffer overflow in function WebPDecodeRGBInto is possible due to an invalid check for buffer size. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVSS3: 9.8
EPSS: Низкий
fstec логотип

BDU:2021-03100

больше 4 лет назад

Уязвимость библиотеки libwebp для кодирования и декодирования изображений в формате WebP, связанная с переполнением буфера в «куче», позволяющая нарушителю выполнить произвольный код

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-mprg-gw36-367p

больше 3 лет назад

A flaw was found in libwebp in versions before 1.0.1. A use-after-free was found due to a thread being killed too early. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVSS3: 9.8
EPSS: Низкий
fstec логотип

BDU:2021-03101

больше 4 лет назад

Уязвимость библиотеки libwebp для кодирования и декодирования изображений в формате WebP, связанная с использованием памяти после ее освобождения, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2020-36329

A flaw was found in libwebp in versions before 1.0.1. A use-after-free was found due to a thread being killed too early. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVSS3: 9.8
1%
Низкий
почти 6 лет назад
nvd логотип
CVE-2020-36329

A flaw was found in libwebp in versions before 1.0.1. A use-after-free was found due to a thread being killed too early. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVSS3: 9.8
1%
Низкий
больше 4 лет назад
msrc логотип
CVE-2020-36329

A flaw was found in libwebp in versions before 1.0.1. A use-after-free was found due to a thread being killed too early. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVSS3: 9.8
1%
Низкий
больше 4 лет назад
debian логотип
CVE-2020-36329

A flaw was found in libwebp in versions before 1.0.1. A use-after-free ...

CVSS3: 9.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-jxwm-333p-5cwx

A flaw was found in libwebp in versions before 1.0.1. A heap-based buffer overflow in function WebPDecodeRGBInto is possible due to an invalid check for buffer size. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVSS3: 9.8
1%
Низкий
больше 3 лет назад
fstec логотип
BDU:2021-03100

Уязвимость библиотеки libwebp для кодирования и декодирования изображений в формате WebP, связанная с переполнением буфера в «куче», позволяющая нарушителю выполнить произвольный код

CVSS3: 8.8
1%
Низкий
больше 4 лет назад
github логотип
GHSA-mprg-gw36-367p

A flaw was found in libwebp in versions before 1.0.1. A use-after-free was found due to a thread being killed too early. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability.

CVSS3: 9.8
1%
Низкий
больше 3 лет назад
fstec логотип
BDU:2021-03101

Уязвимость библиотеки libwebp для кодирования и декодирования изображений в формате WebP, связанная с использованием памяти после ее освобождения, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.8
1%
Низкий
больше 4 лет назад

Уязвимостей на страницу