📦 Gtkwave

by Tonybybell

🔍 What is Gtkwave?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-39316

HIGH CVSS 7.8 Jan 8, 2024

CVE-2023-39316 is an integer overflow vulnerability in GTKWave's LXT2 file parser that can lead to arbitrary code execution when processing malicious .lxt2 files. Users who open specially crafted wave...

CVE-2023-39413

HIGH CVSS 7.0 Jan 8, 2024

This vulnerability allows attackers to execute arbitrary code or cause denial of service by tricking users into opening a malicious .lxt2 file in GTKWave. The integer underflow during left shift opera...

CVE-2023-39443

HIGH CVSS 7.8 Jan 8, 2024

This vulnerability allows arbitrary code execution when a user opens a malicious .lxt2 file in GTKWave. Attackers can craft files that trigger out-of-bounds writes during LXT2 parsing, potentially lea...

CVE-2023-39272

HIGH CVSS 7.8 Jan 8, 2024

CVE-2023-39272 is an integer overflow vulnerability in GTKWave's LXT2 file parser that can lead to arbitrary code execution when a malicious .lxt2 file is opened. Users of GTKWave 3.3.115 who open unt...

CVE-2023-39274

HIGH CVSS 7.8 Jan 8, 2024

CVE-2023-39274 is an integer overflow vulnerability in GTKWave's LXT2 file parser that allows arbitrary code execution when a user opens a malicious .lxt2 file. This affects users of GTKWave version 3...

CVE-2023-38653

HIGH CVSS 7.0 Jan 8, 2024

This CVE describes integer overflow vulnerabilities in GTKWave's VZT file parser that can lead to memory corruption when processing specially crafted .vzt files. Attackers can exploit these vulnerabil...

CVE-2023-39234

HIGH CVSS 7.8 Jan 8, 2024

This vulnerability allows arbitrary code execution when a user opens a specially crafted .vzt file in GTKWave. Attackers can exploit out-of-bounds write vulnerabilities in the VZT file parser to execu...

CVE-2023-39270

HIGH CVSS 7.8 Jan 8, 2024

This CVE describes integer overflow vulnerabilities in GTKWave's LXT2 file parser that can lead to arbitrary code execution when a malicious .lxt2 file is opened. Users of GTKWave 3.3.115 who open unt...

CVE-2023-38649

HIGH CVSS 7.8 Jan 8, 2024

CVE-2023-38649 is an out-of-bounds write vulnerability in GTKWave's VZT file decompression that allows arbitrary code execution when a malicious .vzt file is opened. This affects users of GTKWave 3.3....

CVE-2023-38651

HIGH CVSS 7.0 Jan 8, 2024

This CVE describes integer overflow vulnerabilities in GTKWave's VZT file parser that can lead to memory corruption when processing specially crafted .vzt files. Attackers can exploit this by tricking...

CVE-2023-38621

HIGH CVSS 7.8 Jan 8, 2024

This CVE describes integer overflow vulnerabilities in GTKWave's VZT facgeometry parsing that can lead to arbitrary code execution when a malicious .vzt file is opened. Users of GTKWave 3.3.115 who op...

CVE-2023-38623

HIGH CVSS 7.8 Jan 8, 2024

This CVE describes integer overflow vulnerabilities in GTKWave's VZT facgeometry parsing that can lead to arbitrary code execution when a malicious .vzt file is opened. Users of GTKWave 3.3.115 who op...

CVE-2023-38583

HIGH CVSS 7.8 Jan 8, 2024

This CVE describes a stack-based buffer overflow vulnerability in GTKWave's LXT2 file parser. Attackers can craft malicious .lxt2 files that, when opened by a victim, could lead to arbitrary code exec...

CVE-2023-38619

HIGH CVSS 7.8 Jan 8, 2024

This CVE describes integer overflow vulnerabilities in GTKWave's VZT facgeometry parsing that can lead to arbitrary code execution when a malicious .vzt file is opened. Users of GTKWave 3.3.115 who op...

CVE-2023-37576

HIGH CVSS 7.8 Jan 8, 2024

CVE-2023-37576 is a use-after-free vulnerability in GTKWave's VCD file parser that allows arbitrary code execution when a malicious .vcd file is opened. Users who open untrusted .vcd files with GTKWav...

CVE-2023-37578

HIGH CVSS 7.8 Jan 8, 2024

CVE-2023-37578 is a use-after-free vulnerability in GTKWave's VCD file parser that allows arbitrary code execution when a malicious .vcd file is opened. Users who open untrusted .vcd files with GTKWav...

CVE-2023-37922

HIGH CVSS 7.8 Jan 8, 2024

This vulnerability allows arbitrary code execution when GTKWave processes a specially crafted .vcd file. Attackers can exploit this by tricking users into opening malicious files, potentially gaining ...

CVE-2023-37447

HIGH CVSS 7.8 Jan 8, 2024

CVE-2023-37447 is a memory corruption vulnerability in GTKWave's VCD file parser that allows arbitrary code execution when a user opens a malicious .vcd file. Attackers can exploit out-of-bounds read/...

CVE-2023-37574

HIGH CVSS 7.8 Jan 8, 2024

This vulnerability allows arbitrary code execution when a user opens a specially crafted .vcd file in GTKWave. Attackers can exploit use-after-free flaws in the VCD parsing code to gain control of the...

CVE-2023-37420

HIGH CVSS 7.8 Jan 8, 2024

CVE-2023-37420 is an out-of-bounds write vulnerability in GTKWave's VCD parser that allows arbitrary code execution when processing malicious .vcd files. Users who open specially crafted .vcd files or...

CVE-2023-37443

HIGH CVSS 7.8 Jan 8, 2024

This vulnerability allows arbitrary code execution when a user opens a malicious VCD file in GTKWave. Attackers can exploit out-of-bounds read vulnerabilities in the VCD parsing code to potentially ta...

CVE-2023-37445

HIGH CVSS 7.8 Jan 8, 2024

CVE-2023-37445 is a critical vulnerability in GTKWave 3.3.115 where specially crafted VCD files can trigger out-of-bounds read/write conditions leading to arbitrary code execution. Users who open mali...

CVE-2023-37416

HIGH CVSS 7.8 Jan 8, 2024

CVE-2023-37416 is an out-of-bounds write vulnerability in GTKWave's VCD file parser that allows arbitrary code execution when a malicious .vcd file is opened. Users of GTKWave 3.3.115 who open untrust...

CVE-2023-37418

HIGH CVSS 7.8 Jan 8, 2024

CVE-2023-37418 is an out-of-bounds write vulnerability in GTKWave's VCD file parser that allows arbitrary code execution when processing a malicious .vcd file. Users who open specially crafted files w...

CVE-2023-36747

HIGH CVSS 7.0 Jan 8, 2024

CVE-2023-36747 is a heap-based buffer overflow vulnerability in GTKWave's FST file parser. Attackers can exploit this by tricking users into opening malicious .fst files, potentially leading to arbitr...

CVE-2023-36864

HIGH CVSS 7.8 Jan 8, 2024

This integer overflow vulnerability in GTKWave's FST file parser allows arbitrary code execution when a user opens a specially crafted malicious .fst file. Attackers can exploit this to gain control o...

CVE-2023-36916

HIGH CVSS 7.8 Jan 8, 2024

This CVE-2023-36916 vulnerability allows arbitrary code execution through integer overflow in GTKWave's FST file parser. Attackers can craft malicious .fst files that trigger memory corruption when op...

CVE-2023-35995

HIGH CVSS 7.8 Jan 8, 2024

CVE-2023-35995 is an improper array index validation vulnerability in GTKWave's fst file parser that allows arbitrary code execution when processing malicious .fst files. Users who open specially craf...

CVE-2023-35997

HIGH CVSS 7.8 Jan 8, 2024

This vulnerability allows arbitrary code execution when a user opens a specially crafted .fst file in GTKWave. Attackers can exploit improper array index validation in the tdelta functionality to exec...

CVE-2023-35964

HIGH CVSS 7.8 Jan 8, 2024

This CVE allows arbitrary command execution through OS command injection in GTKWave's vcd2lxt utility when processing specially crafted wave files. Attackers can achieve remote code execution by trick...

CVE-2023-35970

HIGH CVSS 7.8 Jan 8, 2024

CVE-2023-35970 is a heap-based buffer overflow vulnerability in GTKWave's FST file parser that allows arbitrary code execution when a user opens a malicious .fst file. This affects users of GTKWave 3....

CVE-2023-35992

HIGH CVSS 7.0 Jan 8, 2024

An integer overflow vulnerability in GTKWave's FST file parser allows memory corruption when processing malicious .fst files. This affects users who open untrusted waveform files with vulnerable 32-bi...

CVE-2023-35958

HIGH CVSS 7.8 Jan 8, 2024

CVE-2023-35958 is a heap-based buffer overflow vulnerability in GTKWave's FST file parser that allows arbitrary code execution when a user opens a malicious .fst file. This affects users of GTKWave 3....

CVE-2023-35960

HIGH CVSS 7.8 Jan 8, 2024

This CVE describes OS command injection vulnerabilities in GTKWave's decompression functionality. Attackers can execute arbitrary commands by tricking users into opening specially crafted wave files. ...

CVE-2023-35962

HIGH CVSS 7.8 Jan 8, 2024

CVE-2023-35962 allows arbitrary command execution through OS command injection in GTKWave's vcd2vzt utility when processing specially crafted wave files. Attackers can achieve remote code execution by...

CVE-2023-35704

HIGH CVSS 7.8 Jan 8, 2024

This vulnerability allows arbitrary code execution when a user opens a malicious .fst file in GTKWave. Attackers can exploit stack-based buffer overflows in the FST LEB128 varint functionality to gain...

CVE-2023-35956

HIGH CVSS 7.8 Jan 8, 2024

This vulnerability allows arbitrary code execution when a user opens a malicious .fst file in GTKWave. Attackers can exploit heap-based buffer overflows in the fstReaderIterBlocks2 VCDATA parsing func...

CVE-2023-35057

HIGH CVSS 7.8 Jan 8, 2024

An integer overflow vulnerability in GTKWave's LXT2 file parser allows memory corruption when processing specially crafted .lxt2 files. Attackers can exploit this by tricking users into opening malici...

CVE-2023-35702

HIGH CVSS 7.8 Jan 8, 2024

This CVE describes multiple stack-based buffer overflow vulnerabilities in GTKWave's FST LEB128 varint parsing functionality. Attackers can craft malicious .fst files that, when opened by victims, cou...

CVE-2023-32650

HIGH CVSS 7.0 Jan 8, 2024

An integer overflow vulnerability in GTKWave's FST_BL_GEOM parser allows memory corruption when processing malicious .fst files. This affects users who open untrusted waveform files with vulnerable 32...