Skip to main content

Vendor/product archive

tencent / libpag CVEs

Beta · best-effort

2 CVEs tagged to tencent / libpag1 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2024-34408

Published May 3, 2024

Tencent libpag through 4.3.51 has an integer overflow in DecodeStream::checkEndOfFile() in codec/utils/DecodeStream.cpp via a crafted PAG (Portable Animated Graphics) file.

CVSS 5.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2024-33078

Published May 1, 2024

Tencent Libpag v4.3 is vulnerable to Buffer Overflow. A user can send a crafted image to trigger a overflow leading to remote code execution.

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1