📦 Swftools

by Swftools

🔍 What is Swftools?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-26339

CRITICAL CVSS 9.1 Mar 5, 2024

CVE-2024-26339 is a critical buffer overflow vulnerability in swftools v0.9.2 caused by a strcpy parameter overlap. This allows attackers to execute arbitrary code or cause denial of service by proces...

CVE-2024-28458

HIGH CVSS 7.5 Apr 11, 2024

A Null Pointer Dereference vulnerability in swfdump within swftools 0.9.2 allows attackers to crash the application by exploiting the compileSWFActionCode function. This affects users processing untru...

CVE-2024-25165

HIGH CVSS 7.8 Feb 14, 2024

A global buffer overflow vulnerability in SWFTools v0.9.2 allows attackers to execute arbitrary code or cause denial of service by processing malicious SWF files. This affects systems running vulnerab...

CVE-2024-22955

HIGH CVSS 7.8 Jan 19, 2024

CVE-2024-22955 is a stack-buffer-underflow vulnerability in swftools 0.9.2 that allows attackers to read sensitive memory contents or potentially execute arbitrary code by crafting malicious SWF files...

CVE-2024-22911

HIGH CVSS 7.8 Jan 19, 2024

A stack-buffer-underflow vulnerability in SWFTools v0.9.2 allows attackers to read memory contents beyond allocated buffer boundaries when parsing SWF files. This affects users processing untrusted SW...

CVE-2024-22913

HIGH CVSS 7.8 Jan 19, 2024

A heap buffer overflow vulnerability in SWFTools v0.9.2 allows remote code execution when processing malicious SWF files. This affects systems running vulnerable versions of SWFTools that process untr...

CVE-2024-22915

HIGH CVSS 7.8 Jan 19, 2024

A heap-use-after-free vulnerability in SWFTools v0.9.2 allows attackers to execute arbitrary code by exploiting improper memory handling in the swf_DeleteTag function. This affects users who process u...

CVE-2024-22562

HIGH CVSS 7.8 Jan 19, 2024

CVE-2024-22562 is a stack buffer underflow vulnerability in swftools 0.9.2 that allows attackers to execute arbitrary code or cause denial of service by processing malicious SWF files. This affects sy...

CVE-2024-22920

HIGH CVSS 7.8 Jan 19, 2024

CVE-2024-22920 is a heap-use-after-free vulnerability in swftools 0.9.2 that allows attackers to execute arbitrary code or cause denial of service. This affects systems running vulnerable versions of ...

CVE-2021-42203

HIGH CVSS 7.8 Jun 2, 2022

This vulnerability is a heap-use-after-free flaw in swftools that allows attackers to execute arbitrary code by exploiting font extraction in SWF files. It affects all users processing untrusted SWF f...

CVE-2021-42195

HIGH CVSS 7.8 Jun 2, 2022

CVE-2021-42195 is a heap buffer overflow vulnerability in swftools that allows attackers to execute arbitrary code by exploiting the handleEditText() function in swfdump.c. This affects all users of s...

CVE-2021-42197

HIGH CVSS 7.8 Jun 2, 2022

CVE-2021-42197 is a memory leak vulnerability in swftools' swfdump utility that can lead to remote code execution. Attackers can exploit this by providing malicious SWF files to swfdump, potentially g...

CVE-2021-42199

HIGH CVSS 7.8 Jun 2, 2022

This CVE describes a heap buffer overflow vulnerability in swftools that allows remote code execution when processing malicious SWF files. Attackers can exploit this by tricking users into opening spe...

CVE-2021-42201

HIGH CVSS 7.8 Jun 2, 2022

CVE-2021-42201 is a heap buffer overflow vulnerability in swftools that allows attackers to execute arbitrary code by exploiting the swf_GetD64() function. This affects all users of swftools through v...

CVE-2021-39595

HIGH CVSS 7.8 Sep 20, 2021

This vulnerability in swftools allows attackers to execute arbitrary code through a stack buffer overflow in the rfx_alloc() function. It affects all users of swftools up to version 20200710 who proce...

CVE-2021-39558

HIGH CVSS 7.8 Sep 20, 2021

This vulnerability in swftools allows attackers to execute arbitrary code through a stack buffer overflow when processing malicious SWF files. It affects all users of swftools up to version 20200710 w...

CVE-2021-39561

HIGH CVSS 7.8 Sep 20, 2021

CVE-2021-39561 is a stack buffer overflow vulnerability in swftools that allows remote code execution when processing malicious SWF files. Attackers can exploit this by tricking users into opening spe...

CVE-2021-39564

HIGH CVSS 7.8 Sep 20, 2021

CVE-2021-39564 is a heap buffer overflow vulnerability in swftools that allows attackers to execute arbitrary code by exploiting the swf_DumpActions() function. This affects all users of swftools up t...

CVE-2021-39574

HIGH CVSS 7.8 Sep 20, 2021

This vulnerability is a heap buffer overflow in swftools' pool_read() function that allows attackers to execute arbitrary code. It affects all users of swftools through version 20200710 who process un...

CVE-2021-39577

HIGH CVSS 7.8 Sep 20, 2021

CVE-2021-39577 is a heap buffer overflow vulnerability in swftools' swfdump utility that allows attackers to execute arbitrary code by providing a malicious SWF file. This affects users who process un...

CVE-2021-39582

HIGH CVSS 7.8 Sep 20, 2021

A heap buffer overflow vulnerability in swftools allows attackers to execute arbitrary code by exploiting the swf_GetPlaceObject() function. This affects all users of swftools up to version 20200710 w...