Tintin maintains a narrow line of text-editing and terminal-emulation software, with vulnerabilities centered on input-handling and memory-boundary issues such as improper input validation and buffer-boundary violations. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Tintin over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2008-0671HIGH Stack-based buffer overflow in the add_line_buffer function in TinTin++ 1.97.9 and WinTin++ 1.97.9 allows remote attackers to execute arbitrary code via a long chat message, relate | Feb 12, 2008 | 10.0 | 42 | NO | YES |
CVE-2008-0673HIGH TinTin++ 1.97.9 and WinTin++ 1.97.9 open files on the basis of an inbound file-transfer request, before the user has an opportunity to decline the request, which allows remote atta | Feb 12, 2008 | 7.5 | 22 | NO | NO |
CVE-2008-0672MEDIUM The process_chat_input function in TinTin++ 1.97.9 and WinTin++ 1.97.9 allows remote attackers to cause a denial of service (application crash) via a YES message without a newline | Feb 12, 2008 | 5.0 | 17 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Tintin.
Media articles that mention a CVE ID that affects a product developed by Tintin — matched by CVE ID, not by vendor name.