Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-62213
HistoryJun 10, 2022 - 12:00 a.m.

Swftools out-of-bounds write vulnerability (CNVD-2022-62213)

2022-06-1000:00:00
China National Vulnerability Database
www.cnvd.org.cn
10
swftools
adobe flash
vulnerability
out-of-bounds write
code execution

EPSS

0.001

Percentile

36.3%

Swftools is a set of utilities for working with Adobe Flash files (SWF files). swftools 2020-12-22 and earlier versions are vulnerable to an out-of-bounds write vulnerability, which originates in the function swf_FontExtract_DefineTextCallback() located in swftext.c A heap buffer overflow exists. An attacker could exploit this vulnerability to enable code execution.

EPSS

0.001

Percentile

36.3%