Show filters
508 Total Results
Displaying 21-30 of 508
Sort by:
Attacker Value
Unknown

CVE-2011-1490

Disclosure Date: November 14, 2019 (last updated November 27, 2024)
A memory leak in rsyslog before 5.7.6 was found in the way deamon processed log messages are logged when multiple rulesets were used and some output batches contained messages belonging to more than one ruleset. A local attacker could cause denial of the rsyslogd daemon service via a log message belonging to more than one ruleset
Attacker Value
Unknown

CVE-2011-1488

Disclosure Date: November 14, 2019 (last updated November 27, 2024)
A memory leak in rsyslog before 5.7.6 was found in the way deamon processed log messages are logged when $RepeatedMsgReduction was enabled. A local attacker could use this flaw to cause a denial of the rsyslogd daemon service by crashing the service via a sequence of repeated log messages sent within short periods of time.
Attacker Value
Unknown

CVE-2011-1489

Disclosure Date: November 14, 2019 (last updated November 27, 2024)
A memory leak in rsyslog before 5.7.6 was found in the way deamon processed log messages were logged when multiple rulesets were used and some output batches contained messages belonging to more than one ruleset. A local attacker could cause denial of the rsyslogd daemon service via a log message belonging to more than one ruleset.
Attacker Value
Unknown

CVE-2010-4661

Disclosure Date: November 13, 2019 (last updated November 27, 2024)
udisks before 1.0.3 allows a local user to load arbitrary Linux kernel modules.
Attacker Value
Unknown

CVE-2013-6365

Disclosure Date: November 05, 2019 (last updated November 27, 2024)
Horde Groupware Web mail 5.1.2 has CSRF with requests to change permissions
Attacker Value
Unknown

CVE-2017-5331

Disclosure Date: November 04, 2019 (last updated November 27, 2024)
Integer overflow in the check_offset function in b/wrestool/fileread.c in icoutils before 0.31.1 allows local users to cause a denial of service (process crash) and execute arbitrary code via a crafted executable.
Attacker Value
Unknown

CVE-2017-5332

Disclosure Date: November 04, 2019 (last updated November 27, 2024)
The extract_group_icon_cursor_resource in wrestool/extract.c in icoutils before 0.31.1 can access unallocated memory, which allows local users to cause a denial of service (process crash) and execute arbitrary code via a crafted executable.
Attacker Value
Unknown

CVE-2017-5333

Disclosure Date: November 04, 2019 (last updated November 27, 2024)
Integer overflow in the extract_group_icon_cursor_resource function in b/wrestool/extract.c in icoutils before 0.31.1 allows local users to cause a denial of service (process crash) or execute arbitrary code via a crafted executable file.
Attacker Value
Unknown

CVE-2013-3718

Disclosure Date: November 01, 2019 (last updated November 27, 2024)
evince is missing a check on number of pages which can lead to a segmentation fault
Attacker Value
Unknown

CVE-2019-9811

Disclosure Date: July 23, 2019 (last updated November 27, 2024)
As part of a winning Pwn2Own entry, a researcher demonstrated a sandbox escape by installing a malicious language pack and then opening a browser feature that used the compromised translation. This vulnerability affects Firefox ESR < 60.8, Firefox < 68, and Thunderbird < 60.8.