彙總 libfpx_project 相關全部產品的 CVE 與安全漏洞情報,包括 CVSS、EPSS、公開時間與漏洞情報資料。
常見弱點模式包括 記憶體損壞與緩衝區溢位,在 軟體部署與生產負載 使用場景中可能帶來 記憶體損壞與應用程式崩潰 等風險。
相關漏洞資料主要來源於公開漏洞披露與安全公告,可用於評估歷史漏洞暴露面與修補優先順序。
| CVE | 摘要 | 來源 | 最高 CVSS | EPSS % | 公開時間 | 更新時間 |
|---|---|---|---|---|---|---|
| CVE-2018-6876 | The OLEProperty class in ole/oleprop.cpp in libfpx 1.3.1-10, as used in ImageMagick 7.0.7-22 Q16 and other products, allows remote attackers to cause a denial of service (stack-based buffer under-read) via a crafted bmp image. | [email protected] | 6.5 | 0.57% | 2018-02-09 | 2024-11-21 |
| CVE-2017-12925 | Double free vulnerability in DfFromLB in docfile.cxx in libfpx 1.3.1_p6 allows remote attackers to cause a denial of service via a crafted fpx image. | [email protected] | 6.5 | 0.48% | 2017-08-28 | 2026-05-13 |
| CVE-2017-12924 | CDirVector::GetTable in dirfunc.hxx in libfpx 1.3.1_p6 allows remote attackers to cause a denial of service (divide-by-zero error) via a crafted fpx image. | [email protected] | 6.5 | 0.48% | 2017-08-28 | 2026-05-13 |
| CVE-2017-12923 | OLEStream::WriteVT_LPSTR in olestrm.cpp in libfpx 1.3.1_p6 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted fpx image. | [email protected] | 6.5 | 0.48% | 2017-08-28 | 2026-05-13 |
| CVE-2017-12922 | wchar.c in libfpx 1.3.1_p6 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted fpx image. | [email protected] | 6.5 | 0.48% | 2017-08-28 | 2026-05-13 |
| CVE-2017-12921 | PFileFlashPixView::GetGlobalInfoProperty in f_fpxvw.cpp in libfpx 1.3.1_p6 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted fpx image. | [email protected] | 6.5 | 0.48% | 2017-08-28 | 2026-05-13 |
| CVE-2017-12920 | CDirectory::GetDirEntry in dir.cxx in libfpx 1.3.1_p6 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted fpx image. | [email protected] | 6.5 | 0.48% | 2017-08-28 | 2026-05-13 |
| CVE-2017-12919 | Heap-based buffer overflow in OLEStream::WriteVT_LPSTR in olestrm.cpp in libfpx 1.3.1_p6 allows remote attackers to cause a denial of service via a crafted fpx image. | [email protected] | 6.5 | 0.53% | 2017-08-28 | 2026-05-13 |