First published: Wed Jul 05 2017(Updated: )
In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of service via a crafted file, related to a "User Mode Write AV starting at image00000000_00400000+0x000000000001b72a."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SWFTools | =2013-04-09-1007 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-9924 is considered to have a high severity due to the potential for remote code execution and denial of service.
To fix CVE-2017-9924, update to a newer version of SWFTools that addresses this vulnerability.
Users of SWFTools version 2013-04-09-1007 on Windows are affected by CVE-2017-9924.
CVE-2017-9924 is a remote code execution vulnerability that can also lead to denial of service.
CVE-2017-9924 can be exploited by remote attackers through the use of crafted files processed by png2swf.