Vulnerabilities > Google > Picasa > High

DATE CVE VULNERABILITY TITLE RISK
2014-01-09 CVE-2013-5359 Buffer Errors vulnerability in Google Picasa 3.9.0
Stack-based buffer overflow in Picasa3.exe in Google Picasa before 3.9.0 Build 137.69 might allow remote attackers to execute arbitrary code via a crafted RAW file, as demonstrated using a KDC file with a certain size.
network
low complexity
google CWE-119
7.5
2014-01-09 CVE-2013-5358 Buffer Errors vulnerability in Google Picasa 3.9.0
Picasa3.exe in Google Picasa before 3.9.0 Build 137.69 allows remote attackers to trigger memory corruption via a crafted TIFF tag, as demonstrated using a KDC file with a DSLR-A100 model and certain sequences of tags.
network
low complexity
google CWE-119
7.5
2014-01-09 CVE-2013-5357 Buffer Errors vulnerability in Google Picasa 3.9.0
Integer overflow in Picasa3.exe in Google Picasa before 3.9.0 Build 137.69 allows remote attackers to execute arbitrary code via a long TIFF tag that triggers a heap-based buffer overflow, as demonstrated using a Canon RAW CR2 file with a long TIFF StripByteCounts tag.
network
low complexity
google CWE-119
7.5
2014-01-09 CVE-2013-5349 Buffer Errors vulnerability in Google Picasa 3.9.0
Integer underflow in Picasa3.exe in Google Picasa before 3.9.0 Build 137.69 allows remote attackers to execute arbitrary code via a crafted JPEG tag that triggers a heap-based buffer overflow, as demonstrated using a Canon RAW CR2 file with a large JPEG tag value and a small size.
network
low complexity
google CWE-119
7.5
2007-09-11 CVE-2007-4823 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Google Picasa
Multiple buffer overflows in Google Picasa have unspecified attack vectors and impact.
network
low complexity
google CWE-119
7.5