Moinejf Abcm2Ps vulnerabilities

7 known vulnerabilities affecting moinejf/abcm2ps.

Total CVEs
7
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL4HIGH1MEDIUM2

Vulnerabilities

Page 1 of 1
CVE-2019-1010069MEDIUMCVSS 5.5v8.13.20v8.13.20 [fixed: after commit commit 08aef597656d065e86075f3d53fda89765845eae]2019-07-18
CVE-2019-1010069 [MEDIUM] CWE-119 CVE-2019-1010069: moinejf abcm2ps 8.13.20 is affected by: Incorrect Access Control. The impact is: Allows attackers to moinejf abcm2ps 8.13.20 is affected by: Incorrect Access Control. The impact is: Allows attackers to cause a denial of service attack via a crafted file. The component is: front.c, function txt_add. The fixed version is: after commit commit 08aef597656d065e86075f3d53fda89765845eae.
nvd
CVE-2018-10771CRITICALCVSS 9.8≤ 8.13.202018-05-07
CVE-2018-10771 [CRITICAL] CWE-787 CVE-2018-10771: Stack-based buffer overflow in the get_key function in parse.c in abcm2ps through 8.13.20 allows rem Stack-based buffer overflow in the get_key function in parse.c in abcm2ps through 8.13.20 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.
nvd
CVE-2018-10753CRITICALCVSS 9.8≤ 8.13.202018-05-05
CVE-2018-10753 [CRITICAL] CWE-787 CVE-2018-10753: Stack-based buffer overflow in the delayed_output function in music.c in abcm2ps through 8.13.20 all Stack-based buffer overflow in the delayed_output function in music.c in abcm2ps through 8.13.20 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.
nvd
CVE-2010-4744CRITICALCVSS 10.0fixed in 5.9.132011-02-18
CVE-2010-4744 [CRITICAL] CVE-2010-4744: Multiple unspecified vulnerabilities in abcm2ps before 5.9.13 have unknown impact and attack vectors Multiple unspecified vulnerabilities in abcm2ps before 5.9.13 have unknown impact and attack vectors, a different issue than CVE-2010-3441.
nvd
CVE-2010-3441HIGHCVSS 7.5fixed in 5.9.122011-02-18
CVE-2010-3441 [HIGH] CWE-120 CVE-2010-3441: Multiple buffer overflows in abcm2ps before 5.9.12 might allow remote attackers to execute arbitrary Multiple buffer overflows in abcm2ps before 5.9.12 might allow remote attackers to execute arbitrary code via (1) a crafted input file, related to the PUT0 and PUT1 output macros; (2) a crafted input file, related to the trim_title function; and possibly (3) a long -O option on a command line.
nvd
CVE-2010-4743MEDIUMCVSS 6.8fixed in 5.9.132011-02-18
CVE-2010-4743 [MEDIUM] CVE-2010-4743: Heap-based buffer overflow in the getarena function in abc2ps.c in abcm2ps before 5.9.13 might allow Heap-based buffer overflow in the getarena function in abc2ps.c in abcm2ps before 5.9.13 might allow remote attackers to execute arbitrary code via a crafted ABC file, a different vulnerability than CVE-2010-3441. NOTE: some of these details are obtained from third party information.
nvd
CVE-2004-1258CRITICALCVSS 10.0v3.7.202005-01-10
CVE-2004-1258 [CRITICAL] CWE-119 CVE-2004-1258: Buffer overflow in the put_words function in subs.c for abcm2ps 3.7.20 allows remote attackers to ex Buffer overflow in the put_words function in subs.c for abcm2ps 3.7.20 allows remote attackers to execute arbitrary code via crafted ABC files.
nvd