This page aggregates publicly disclosed CVE and security risk information related to dillo, with CVSS, EPSS, publication dates, and vulnerability intelligence data to help assess potential risk and remediation priority.
| CVE | 概要 | ソース | CVSS 最大値 | EPSS(%) | 公開 | 更新 |
|---|---|---|---|---|---|---|
| CVE-2009-2294 | Integer overflow in the Png_datainfo_callback function in Dillo 2.1 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a PNG image with crafted (1) width or (2) height values. | [email protected] | 7.5 | 1.90% | 2009-07-05 | 2026-04-23 |
| CVE-2005-0012 | Format string vulnerability in the a_Interface_msg function in Dillo before 0.8.3-r4 allows remote attackers to execute arbitrary code via format string specifiers in a web page. | [email protected] | 7.5 | 2.70% | 2005-05-02 | 2026-03-27 |