VYPR

Ziproxy

by Daniel Mealha Cabrita

CVEs (2)

  • CVE-2010-2350Jun 21, 2010
    risk 0.00cvss epss 0.02

    Heap-based buffer overflow in the PNG decoder in Ziproxy 3.1.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PNG file.

  • CVE-2010-1513May 26, 2010
    risk 0.00cvss epss 0.03

    Multiple integer overflows in src/image.c in Ziproxy before 3.0.1 allow remote attackers to execute arbitrary code via (1) a large JPG image, related to the jpg2bitmap function or (2) a large PNG image, related to the png2bitmap function, leading to heap-based buffer overflows.