CVE-2023-27249

swfdump v0.9.2 was discovered to contain a heap buffer overflow in the function swf_GetPlaceObject at swfobject.c.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:swftools:swftools:0.9.2:*:*:*:*:*:*:*

History

27 Mar 2023, 15:59

Type Values Removed Values Added
References (MISC) https://github.com/keepinggg/poc/blob/main/poc_of_swfdump/poc - (MISC) https://github.com/keepinggg/poc/blob/main/poc_of_swfdump/poc - Exploit, Third Party Advisory
References (MISC) https://github.com/matthiaskramm/swftools - (MISC) https://github.com/matthiaskramm/swftools - Product
References (MISC) http://swfdump.com - (MISC) http://swfdump.com - Broken Link
References (MISC) https://github.com/matthiaskramm/swftools/issues/197 - (MISC) https://github.com/matthiaskramm/swftools/issues/197 - Exploit, Issue Tracking, Third Party Advisory
References (MISC) https://github.com/keepinggg/poc/tree/main/poc_of_swfdump - (MISC) https://github.com/keepinggg/poc/tree/main/poc_of_swfdump - Exploit, Third Party Advisory
First Time Swftools
Swftools swftools
CWE CWE-787
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
CPE cpe:2.3:a:swftools:swftools:0.9.2:*:*:*:*:*:*:*

23 Mar 2023, 02:15

Type Values Removed Values Added
New CVE

Information

Published : 2023-03-23 02:15

Updated : 2023-12-10 15:01


NVD link : CVE-2023-27249

Mitre link : CVE-2023-27249

CVE.ORG link : CVE-2023-27249


JSON object : View

Products Affected

swftools

  • swftools
CWE
CWE-787

Out-of-bounds Write