AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2014-2977

HIGH · CVSS 10 EPSS 6.78%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2014-06-11 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2014-2977
Severity
HIGH
CVSS
10
EPSS
6.78%

Original NVD Description

Multiple integer signedness errors in the Dispatch_Write function in proxy/dispatcher/idirectfbsurface_dispatcher.c in DirectFB 1.4.13 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the Voodoo interface, which triggers a stack-based buffer overflow.