CVE-2024-54772
Mar, 11/02/2025 – 23:15
CVE-2024-54772
CVE-2024-54772
Mar, 11/02/2025 – 23:15
CVE-2024-54772
CVE-2024-44336
Mar, 11/02/2025 – 23:15
CVE-2024-44336
CVE-2025-1044
Mar, 11/02/2025 – 20:15
CVE-2025-1044
The specific flaw exists within the web service, which listens on TCP port 443 by default. The issue results from the lack of proper implementation of the authentication algorithm. An attacker can leverage this vulnerability to bypass authentication on the system. Was ZDI-CAN-25336.
CVE-2025-0911
Mar, 11/02/2025 – 20:15
CVE-2025-0911
The specific flaw exists within the parsing of U3D files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated object. An attacker can leverage this in conjunction with other vulnerabilities to execute arbitrary code in the context of the current process. Was ZDI-CAN-25957.
CVE-2025-0910
Mar, 11/02/2025 – 20:15
CVE-2025-0910
The specific flaw exists within the parsing of U3D files. The issue results from the lack of proper validation of user-supplied data, which can result in a write past the end of an allocated object. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-25748.
CVE-2025-1052
Mar, 11/02/2025 – 20:15
CVE-2025-1052
The specific flaw exists within the parsing of sixel images. The issue results from the lack of proper validation of the length of user-supplied data prior to copying it to a heap-based buffer. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-23382.
CVE-2025-25527
Mar, 11/02/2025 – 20:15
CVE-2025-25527
CVE-2025-25526
Mar, 11/02/2025 – 20:15
CVE-2025-25526
CVE-2025-25525
Mar, 11/02/2025 – 20:15
CVE-2025-25525
CVE-2025-25530
Mar, 11/02/2025 – 20:15
CVE-2025-25530