DirectFB is a lightweight graphics library for embedded and framebuffer-based systems, with its vulnerability footprint concentrated in a single product around memory-buffer handling and bounds-checking issues. Current severity, exploitation, and exposure figures are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Directfb over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2014-2978HIGH The Dispatch_Write function in proxy/dispatcher/idirectfbsurface_dispatcher.c in DirectFB 1.4.4 allows remote attackers to cause a denial of service (crash) and possibly execute ar | Jun 11, 2014 | 10.0 | 32 | NO | NO |
CVE-2014-2977HIGH Multiple integer signedness errors in the Dispatch_Write function in proxy/dispatcher/idirectfbsurface_dispatcher.c in DirectFB 1.4.13 allow remote attackers to cause a denial of s | Jun 11, 2014 | 10.0 | 27 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Directfb.
Media articles that mention a CVE ID that affects a product developed by Directfb — matched by CVE ID, not by vendor name.