📦

gfl_sdk

Vendor: pierreegougelet

Actively Exploited 0 CISA KEV List
PoC / Exploits 1 Code Available
Total RCEs 0 Remote Access
Total CVEs 2 Total Indexed
Avg. EPSS 10.33% Exploit Prob.
Latest CVE CVE-2008-2427 Jun 24

Security Vulnerability Index

Page 1 / 1
9.3 CVSS
CVE-2008-2427
Exploit Found

Stack-based buffer overflow in NConvert 4.92, GFL SDK 2.82, and XnView 1.93.6 on Windows and 1.70 on Linux and FreeBSD allows user-assisted remote attackers to execute arbitrary code via a crafted format keyword in a Sun TAAC file.

EPSS: 16.06%
9.3 CVSS

Stack-based buffer overflow in Pierre-emmanuel Gougelet (1) XnView 1.91 and 1.92, (2) NConvert 4.85, and (3) libgfl280.dll in GFL SDK 2.870 for Windows allows user-assisted remote attackers to execute arbitrary code via a crafted Radiance RGBE (.hdr) file.

EPSS: 4.61%