CVE-2024-22915

Severity CVSS v4.0:
Pending analysis
Type:
CWE-416 Use After Free
Publication date:
19/01/2024
Last modified:
30/05/2025

Description

A heap-use-after-free was found in SWFTools v0.9.2, in the function swf_DeleteTag at rfxswf.c:1193. It allows an attacker to cause code execution.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:swftools:swftools:0.9.2:*:*:*:*:*:*:*