← All CVEs

CVE-2013-4988

high · 9.3

Stack-based buffer overflow in IcoFX 2.5 and earlier allows remote attackers to execute arbitrary code via a long idCount value in an ICONDIR structure in an ICO file. NOTE: some of these details are obtained from third party information.

9.3
CVSS
67.0%
EPSS (exploit prob.)
99th
EPSS percentile
2013-12-13
Published

AV:N/AC:M/Au:N/C:C/I:C/A:C

Weaknesses

CWE-119

Affected products

VendorProductAffected versions
icofxicofx<= 2.5
icofxicofx1.6
icofxicofx1.6.1
icofxicofx1.6.2
icofxicofx1.6.3
icofxicofx1.6.4
icofxicofx2.0
icofxicofx2.1
icofxicofx2.2
icofxicofx2.3
icofxicofx2.4

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2013-4988