VendorsEntropyminedearkall versions
Vulnerabilities

Entropymine Deark

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2022-43289
Deark v.1.6.2 was discovered to contain a stack overflow via the do_prism_read_palette() function at /modules/atari-img.c.
Published 2022-12-19 · Modified
7.8EPSS 0.004
CVE-2021-28855
In Deark before 1.5.8, a specially crafted input file can cause a NULL pointer dereference in the dbuf_write function (src/deark-dbuf.c).
Published 2021-04-14 · Modified
5.5EPSS 0.009
CVE-2021-28856
In Deark before v1.5.8, a specially crafted input file can cause a division by zero in (src/fmtutil.c) because of the value of pixelsize.
Published 2021-04-14 · Modified
5.5EPSS 0.008