RSS   Vulnerabilities for 'Advancecomp'   RSS

2019-02-27
 
CVE-2019-9210

CWE-190
 

 
In AdvanceCOMP 2.1, png_compress in pngex.cc in advpng has an integer overflow upon encountering an invalid PNG size, which results in an attempted memcpy to write into a buffer that is too small. (There is also a heap-based buffer over-read.)

 
2018-07-27
 
CVE-2018-1056

CWE-125
 

 
An out-of-bounds heap buffer read flaw was found in the way advancecomp before 2.1-2018/02 handled processing of ZIP files. An attacker could potentially use this flaw to crash the advzip utility by tricking it into processing crafted ZIP files.

 


Copyright 2019, cxsecurity.com

 

Back to Top