deark
by Entropymine
CVEs (3)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-43289 | Hig | 0.51 | 7.8 | 0.00 | Dec 19, 2022 | Deark v.1.6.2 was discovered to contain a stack overflow via the do_prism_read_palette() function at /modules/atari-img.c. | ||
| CVE-2021-28856 | Med | 0.00 | 5.5 | 0.01 | Apr 14, 2021 | In Deark before v1.5.8, a specially crafted input file can cause a division by zero in (src/fmtutil.c) because of the value of pixelsize. | ||
| CVE-2021-28855 | Med | 0.00 | 5.5 | 0.01 | Apr 14, 2021 | In Deark before 1.5.8, a specially crafted input file can cause a NULL pointer dereference in the dbuf_write function (src/deark-dbuf.c). |
- risk 0.51cvss 7.8epss 0.00
Deark v.1.6.2 was discovered to contain a stack overflow via the do_prism_read_palette() function at /modules/atari-img.c.
- risk 0.00cvss 5.5epss 0.01
In Deark before v1.5.8, a specially crafted input file can cause a division by zero in (src/fmtutil.c) because of the value of pixelsize.
- risk 0.00cvss 5.5epss 0.01
In Deark before 1.5.8, a specially crafted input file can cause a NULL pointer dereference in the dbuf_write function (src/deark-dbuf.c).