First published: Tue Apr 04 2023(Updated: )
SWFTools v0.9.2 was discovered to contain a stack-use-after-scope in the swf_ReadSWF2 function in lib/rfxswf.c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SWFTools | =0.9.2 | |
=0.9.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-26991 has been classified with a high severity due to the presence of a stack-use-after-scope vulnerability.
To mitigate CVE-2023-26991, you should upgrade SWFTools to the latest version that addresses this vulnerability.
CVE-2023-26991 specifically affects SWFTools version 0.9.2.
CVE-2023-26991 can lead to potential remote code execution and may compromise the security of affected systems.
If upgrading is not possible, consider implementing additional security measures such as network isolation for affected systems.