Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Sane Project

First CVE: Dec 11, 2001Active for: 25 yearsTotal CVEs: 25

Sane Project maintains a specialized image-scanning backend library that, despite a narrow product footprint, occupies a prominent position in document-processing and imaging workflows across enterprise and open-source deployments. The vendor's vulnerability profile reflects the complexity inherent to format parsing and device communication within scanner backends, areas where input-handling and protocol-state issues have been observed across the library's history. Current exposure counts and severity figures are shown alongside this summary.

FAUCET AI Generated
16
Total CVEs
More Total CVEs than 91% of tracked vendors
1.3
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 97% of tracked vendors
5.9
Avg CVSS Score
Higher Avg CVSS Score than 35% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Sane Project over time

Volume of CVEsAvg CVSS Base Score
First CVE
Dec 11, 2001
24 years ago
Most Recent CVE
Mar 27, 2024
849 days ago

Products(1 total)

Top CVEs

Signals from CVEs in this vendor scope (16 CVEs).

16 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2020-12861HIGH
A heap buffer overflow in SANE Backends before 1.0.30 allows a malicious device connected to the same local network as the victim to execute arbitrary code, aka GHSL-2020-080.
Jun 24, 20208.829NONO
CVE-2023-46047HIGH
An issue in Sane 1.2.1 allows a local attacker to execute arbitrary code via a crafted file to the sanei_configure_attach() function. NOTE: this is disputed because there is no exp
Mar 27, 20247.321NONO
CVE-2020-12867MEDIUM
A NULL pointer dereference in sanei_epson_net_read in SANE Backends before 1.0.30 allows a malicious device connected to the same local network as the victim to cause a denial of s
Jun 1, 20205.521NONO
CVE-2023-46052HIGH
Sane 1.2.1 heap bounds overwrite in init_options() from backend/test.c via a long init_mode string in a configuration file. NOTE: this is disputed because there is no expectation t
Mar 27, 20247.120NONO
CVE-2020-12865HIGH
A heap buffer overflow in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to execute arbitrary code, aka GHSL-2020-084.
Jun 24, 20208.020NONO
CVE-2003-0773HIGH
saned in sane-backends 1.0.7 and earlier does not check the IP address of the connecting host during the SANE_NET_INIT RPC call, which allows remote attackers to use that call even
Sep 22, 20037.520NONO
CVE-2003-0774HIGH
saned in sane-backends 1.0.7 and earlier does not quickly handle connection drops, which allows remote attackers to cause a denial of service (segmentation fault) when invalid memo
Sep 22, 20037.520NONO
CVE-2003-0776HIGH
saned in sane-backends 1.0.7 and earlier does not properly "check the validity of the RPC numbers it gets before getting the parameters," with unknown consequences.
Sep 22, 20037.520NONO
CVE-2020-12863MEDIUM
An out-of-bounds read in SANE Backends before 1.0.30 may allow a malicious device connected to the same local network as the victim to read important information, such as the ASLR
Jun 24, 20204.319NONO
CVE-2003-0777MEDIUM
saned in sane-backends 1.0.7 and earlier, when debug messages are enabled, does not properly handle dropped connections, which can prevent strings from being null terminated and ca
Sep 22, 20035.019NONO
View all 16 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products16 CVEs
50%
44%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
LowMediumHigh
Attack Vector
Local3 (18.8%)
Network0 (0.0%)
Unknown7 (43.8%)
Physical0 (0.0%)
Adjacent Network6 (37.5%)
Attack Complexity
Low9 (56.3%)
High0 (0.0%)
Unknown7 (43.8%)
User Interaction
None7 (43.8%)
Unknown7 (43.8%)
Required2 (12.5%)
Privileges Required
Low4 (25.0%)
High0 (0.0%)
None5 (31.3%)
Unknown7 (43.8%)

Exploit Exposure

Signals from CVEs in this vendor scope (16 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Sane Project.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Sane Project — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Sane Project's Products

View all 1 CNAs →

Top CWEs