Show filters
484 Total Results
Displaying 101-110 of 484
Sort by:
Attacker Value
Unknown

CVE-2018-17466

Disclosure Date: November 14, 2018 (last updated November 08, 2023)
Incorrect texture handling in Angle in Google Chrome prior to 70.0.3538.67 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.
0
Attacker Value
Unknown

CVE-2018-19115

Disclosure Date: November 08, 2018 (last updated November 27, 2024)
keepalived before 2.0.7 has a heap-based buffer overflow when parsing HTTP status codes resulting in DoS or possibly unspecified other impact, because extract_status_code in lib/html.c has no validation of the status code and instead writes an unlimited amount of data to the heap.
0
Attacker Value
Unknown

CVE-2016-2125

Disclosure Date: October 31, 2018 (last updated November 08, 2023)
It was found that Samba before versions 4.5.3, 4.4.8, 4.3.13 always requested forwardable tickets when using Kerberos authentication. A service to which Samba authenticated using Kerberos could subsequently use the ticket to impersonate Samba to other services or domain users.
Attacker Value
Unknown

Out-of-Bounds write in systemd-networkd dhcpv6 option handling

Disclosure Date: October 26, 2018 (last updated November 27, 2024)
A buffer overflow vulnerability in the dhcp6 client of systemd allows a malicious dhcp6 server to overwrite heap memory in systemd-networkd. Affected releases are systemd: versions up to and including 239.
Attacker Value
Unknown

CVE-2018-14665

Disclosure Date: October 25, 2018 (last updated November 27, 2024)
A flaw was found in xorg-x11-server before 1.20.3. An incorrect permission check for -modulepath and -logfile options when starting Xorg. X server allows unprivileged users with the ability to log in to the system via physical console to escalate their privileges and run arbitrary code under root privileges.
0
Attacker Value
Unknown

CVE-2018-18559

Disclosure Date: October 22, 2018 (last updated November 27, 2024)
In the Linux kernel through 4.19, a use-after-free can occur due to a race condition between fanout_add from setsockopt and bind on an AF_PACKET socket. This issue exists because of the 15fe076edea787807a7cdc168df832544b58eba6 incomplete fix for a race condition. The code mishandles a certain multithreaded case involving a packet_do_bind unregister action followed by a packet_notifier register action. Later, packet_release operates on only one of the two applicable linked lists. The attacker can achieve Program Counter control.
Attacker Value
Unknown

CVE-2018-18284

Disclosure Date: October 19, 2018 (last updated November 08, 2023)
Artifex Ghostscript 9.25 and earlier allows attackers to bypass a sandbox protection mechanism via vectors involving the 1Policy operator.
0
Attacker Value
Unknown

CVE-2018-12362

Disclosure Date: October 18, 2018 (last updated October 22, 2024)
An integer overflow can occur during graphics operations done by the Supplemental Streaming SIMD Extensions 3 (SSSE3) scaler, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 60, Thunderbird < 52.9, Firefox ESR < 60.1, Firefox ESR < 52.9, and Firefox < 61.
0
Attacker Value
Unknown

CVE-2018-12364

Disclosure Date: October 18, 2018 (last updated October 22, 2024)
NPAPI plugins, such as Adobe Flash, can send non-simple cross-origin requests, bypassing CORS by making a same-origin POST that does a 307 redirect to the target site. This allows for a malicious site to engage in cross-site request forgery (CSRF) attacks. This vulnerability affects Thunderbird < 60, Thunderbird < 52.9, Firefox ESR < 60.1, Firefox ESR < 52.9, and Firefox < 61.
0
Attacker Value
Unknown

CVE-2018-12366

Disclosure Date: October 18, 2018 (last updated October 22, 2024)
An invalid grid size during QCMS (color profile) transformations can result in the out-of-bounds read interpreted as a float value. This could leak private data into the output. This vulnerability affects Thunderbird < 60, Thunderbird < 52.9, Firefox ESR < 60.1, Firefox ESR < 52.9, and Firefox < 61.
0