Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Tagoh

#13260of 53,619
20Total CVSS
Vulnerabilities · 2
High
2
PT-2022-2350
10
2021-12-22
Fribidi · Fribidi · CVE-2022-25310
**Name of the Vulnerable Software and Affected Versions** Fribidi (affected versions not specified) **Description** A segmentation fault flaw was found in the Fribidi package, affecting the `fribidi remove bidi marks()` function. This issue allows an attacker to pass a specially crafted file to Fribidi, leading to a crash and causing a denial of service. The flaw exists due to insufficient input validation, which may allow a remote attacker to execute arbitrary code. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2022-2351
10
2021-12-22
Fribidi · Fribidi · CVE-2022-25308
**Name of the Vulnerable Software and Affected Versions** Fribidi (affected versions not specified) **Description** The issue is caused by a stack-based buffer overflow flaw in the Fribidi package. This flaw allows an attacker to pass a specially crafted file to the Fribidi application, which can lead to a possible memory leak or a denial of service. The exploitation of this flaw may allow a remote attacker to execute arbitrary code. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.