Tobias Stoeckmann

3 exploits Active since Apr 2017
CVE-2017-7875 WRITEUP CRITICAL WRITEUP
Feh < 2.18.2 - Out-of-Bounds Write
In wallpaper.c in feh before v2.18.3, if a malicious client pretends to be the E17 window manager, it is possible to trigger an out-of-boundary heap write while receiving an IPC message. An integer overflow leads to a buffer overflow and/or a double free.
CVSS 9.8
CVE-2017-8073 WRITEUP HIGH WRITEUP
Weechat < 1.7.1 - Memory Corruption
WeeChat before 1.7.1 allows a remote crash by sending a filename via DCC to the IRC plugin. This occurs in the irc_ctcp_dcc_filename_without_quotes function during quote removal, with a buffer overflow.
CVSS 7.5
CVE-2024-37407 WRITEUP CRITICAL WRITEUP
Libarchive - Out-of-Bounds Read
Libarchive before 3.7.4 allows name out-of-bounds access when a ZIP archive has an empty-name file and mac-ext is enabled. This occurs in slurp_central_directory in archive_read_support_format_zip.c.
CVSS 9.1