VYPR
Vendor

Flexhex

Products
1
CVEs
4
Across products
4
Status
Private

Products

1

Recent CVEs

4
  • CVE-2016-6354CriSep 21, 2016
    risk 0.64cvss 9.8epss 0.09

    Heap-based buffer overflow in the yy_get_next_buffer function in Flex before 2.6.1 might allow context-dependent attackers to cause a denial of service or possibly execute arbitrary code via vectors involving num_to_read.

  • CVE-2019-25627HigMar 24, 2026
    risk 0.55cvss 8.4epss 0.00

    FlexHEX 2.71 contains a local buffer overflow vulnerability in the Stream Name field that allows local attackers to execute arbitrary code by triggering a structured exception handler (SEH) overflow. Attackers can craft a malicious text file with carefully aligned shellcode and…

  • CVE-2019-6293MedJan 15, 2019
    risk 0.36cvss 5.5epss 0.02

    An issue was discovered in the function mark_beginning_as_normal in nfa.c in flex 2.6.4. There is a stack exhaustion problem caused by the mark_beginning_as_normal function making recursive calls to itself in certain scenarios involving lots of '*' characters. Remote attackers…

  • CVE-2010-0634Feb 12, 2010
    risk 0.00cvss epss 0.01

    Unspecified vulnerability in Fast Lexical Analyzer Generator (flex) before 2.5.35 has unknown impact and attack vectors.