First published: Thu Oct 13 2022(Updated: )
SWFTools commit 772e55a2 was discovered to contain a heap-buffer overflow via png_load at /lib/png.c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Swftools Swftools | =2021-12-16 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-35080 refers to a heap-buffer overflow vulnerability found in SWFTools commit 772e55a2 via png_load at /lib/png.c.
CVE-2022-35080 has a severity rating of 5.5, which is classified as medium.
CVE-2022-35080 affects SWFTools version 2021-12-16 by allowing a heap-buffer overflow through png_load at /lib/png.c.
Yes, there are known exploits and proofs of concept available for CVE-2022-35080.
At the moment, there is no specific fix available for CVE-2022-35080, but it is recommended to update SWFTools to the latest version and apply any patches or security updates provided by the vendor.