← All CVEs

CVE-2005-3737

medium · 5.1

Buffer overflow in the SVG importer (style.cpp) of inkscape 0.41 through 0.42.2 might allow remote attackers to execute arbitrary code via a SVG file with long CSS style property values.

5.1
CVSS
13.4%
EPSS (exploit prob.)
96th
EPSS percentile
2005-11-22
Published

AV:N/AC:H/Au:N/C:P/I:P/A:P

Affected products

VendorProductAffected versions
inkscapeinkscape0.41
inkscapeinkscape0.42
inkscapeinkscape0.42.1
inkscapeinkscape0.42.2

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2005-3737