RSS   Vulnerabilities for 'Ziproxy'   RSS

2010-06-21
 
CVE-2010-2350

CWE-119
 

 
Heap-based buffer overflow in the PNG decoder in Ziproxy 3.1.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PNG file.

 
2010-05-26
 
CVE-2010-1513

CWE-189
 

 
Multiple integer overflows in src/image.c in Ziproxy before 3.0.1 allow remote attackers to execute arbitrary code via (1) a large JPG image, related to the jpg2bitmap function or (2) a large PNG image, related to the png2bitmap function, leading to heap-based buffer overflows.

 


Copyright 2024, cxsecurity.com

 

Back to Top