Vulnerabilities > Dropbox > Lepton > High

DATE CVE VULNERABILITY TITLE RISK
2022-02-28 CVE-2022-26181 Out-of-bounds Write vulnerability in Dropbox Lepton 1.2.1
Dropbox Lepton v1.2.1-185-g2a08b77 was discovered to contain a heap-buffer-overflow in the function aligned_dealloc():src/lepton/bitops.cc:108.
local
low complexity
dropbox CWE-787
7.8
2019-04-23 CVE-2018-20819 Out-of-bounds Write vulnerability in Dropbox Lepton 1.2.1
io/ZlibCompression.cc in the decompression component in Dropbox Lepton 1.2.1 allows attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact by crafting a jpg image file.
local
low complexity
dropbox CWE-787
7.8