Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Raphael Hertzog

#21027of 53,633
11.8Total CVSS
Vulnerabilities · 2
Medium
2
PT-2015-4919
5.0
2015-09-08
Freeimage · Freeimage · CVE-2015-0852
**Name of the Vulnerable Software and Affected Versions** FreeImage versions 3.17.0 and earlier **Description** The issue is related to multiple integer underflows in PluginPCX.cpp, which can be exploited by remote attackers to cause a denial of service, resulting in heap memory corruption. This can be achieved via vectors related to the height and width of a window. **Recommendations** For FreeImage versions 3.17.0 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2011-1368
6.8
2011-01-11
Debian · Dpkg · CVE-2010-1679
**Name of the Vulnerable Software and Affected Versions** dpkg versions prior to 1.14.31 dpkg version 1.15.x **Description** A directory traversal issue exists, allowing user-assisted remote attackers to modify arbitrary files via directory traversal sequences in a patch for a source-format 3.0 package. **Recommendations** For dpkg versions prior to 1.14.31, update to version 1.14.31 or later. For dpkg version 1.15.x, consider disabling the use of source-format 3.0 packages until a patch is available.