CVE Tools

Dia

6 CVEs tracked since 2005. Since Oct 2005, none of them reached CISA KEV.

Dia CVEs per month

Oct 2005 to Jan 2009. Point at a month, or focus the strip and use the arrow keys.
Dia CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2005-1010
2005-11null or fewer
2005-12null or fewer
2006-01null or fewer
2006-02null or fewer
2006-0310
2006-04null or fewer
2006-0520
2006-06null or fewer
2006-07null or fewer
2006-08null or fewer
2006-09null or fewer
2006-10null or fewer
2006-11null or fewer
2006-12null or fewer
2007-01null or fewer
2007-02null or fewer
2007-03null or fewer
2007-04null or fewer
2007-05null or fewer
2007-0610
2007-07null or fewer
2007-08null or fewer
2007-09null or fewer
2007-10null or fewer
2007-11null or fewer
2007-12null or fewer
2008-01null or fewer
2008-02null or fewer
2008-03null or fewer
2008-04null or fewer
2008-05null or fewer
2008-06null or fewer
2008-07null or fewer
2008-08null or fewer
2008-09null or fewer
2008-10null or fewer
2008-11null or fewer
2008-12null or fewer
2009-0110

Products

The products that kept showing up in Dia's monthly top three, with their CVEs summed over those months.

  1. Dia65 months

Latest CVEs

The 6 most recently published vulnerabilities affecting Dia.

  1. CVE-2008-5984Untrusted search path vulnerability in the Python plugin in Dia 0.96.1, and possibly other versions, allows local users to execute arbitrary code via a Trojan horse Python file in the current worki...6.9
  2. CVE-2007-3408Multiple unspecified vulnerabilities in Dia before 0.96.1-6 have unspecified attack vectors and impact, probably involving the use of vulnerable FreeType libraries that contain CVE-2007-2754 and/or...7.5
  3. CVE-2006-2453Multiple unspecified format string vulnerabilities in Dia have unspecified impact and attack vectors, a different set of issues than CVE-2006-2480.7.5
  4. CVE-2006-2480Format string vulnerability in Dia 0.94 allows user-assisted attackers to cause a denial of service (crash) and possibly execute arbitrary code by triggering errors or warnings, as demonstrated via...5.1
  5. CVE-2006-1550Multiple buffer overflows in the xfig import code (xfig-import.c) in Dia 0.87 and later before 0.95-pre6 allow user-assisted attackers to have an unknown impact via a crafted xfig file, possibly in...7.6
  6. CVE-2005-2966The Python SVG import plugin (diasvg_import.py) for DIA 0.94 and earlier allows user-assisted attackers to execute arbitrary commands via a crafted SVG file.5.1

The record

Peak rank
#64 in May 2006
Busiest month shown
May 2006, 2 CVEs
Months with a KEV entry
0 since Oct 2005
Monthly snapshots
5 since 2005
Dia's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store