Show filters
197 Total Results
Displaying 31-40 of 197
Sort by:
Attacker Value
Unknown

CVE-2020-11761

Disclosure Date: April 14, 2020 (last updated February 21, 2025)
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read during Huffman uncompression, as demonstrated by FastHufDecoder::refill in ImfFastHuf.cpp.
Attacker Value
Unknown

CVE-2020-11759

Disclosure Date: April 14, 2020 (last updated February 21, 2025)
An issue was discovered in OpenEXR before 2.4.1. Because of integer overflows in CompositeDeepScanLine::Data::handleDeepFrameBuffer and readSampleCountForLineBlock, an attacker can write to an out-of-bounds pointer.
Attacker Value
Unknown

CVE-2020-11758

Disclosure Date: April 14, 2020 (last updated February 21, 2025)
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read in ImfOptimizedPixelReading.h.
Attacker Value
Unknown

CVE-2020-11763

Disclosure Date: April 14, 2020 (last updated February 21, 2025)
An issue was discovered in OpenEXR before 2.4.1. There is an std::vector out-of-bounds read and write, as demonstrated by ImfTileOffsets.cpp.
Attacker Value
Unknown

CVE-2020-11762

Disclosure Date: April 14, 2020 (last updated February 21, 2025)
An issue was discovered in OpenEXR before 2.4.1. There is an out-of-bounds read and write in DwaCompressor::uncompress in ImfDwaCompressor.cpp when handling the UNKNOWN compression case.
Attacker Value
Unknown

CVE-2019-19906

Disclosure Date: December 19, 2019 (last updated November 08, 2023)
cyrus-sasl (aka Cyrus SASL) 2.1.27 has an out-of-bounds write leading to unauthenticated remote denial-of-service in OpenLDAP via a malformed LDAP packet. The OpenLDAP crash is ultimately caused by an off-by-one error in _sasl_add_string in common.c in cyrus-sasl.
Attacker Value
Unknown

CVE-2019-15166

Disclosure Date: October 03, 2019 (last updated November 08, 2023)
lmp_print_data_link_subobjs() in print-lmp.c in tcpdump before 4.9.3 lacks certain bounds checks.
Attacker Value
Unknown

CVE-2018-16227

Disclosure Date: October 03, 2019 (last updated November 08, 2023)
The IEEE 802.11 parser in tcpdump before 4.9.3 has a buffer over-read in print-802_11.c for the Mesh Flags subfield.
Attacker Value
Unknown

CVE-2018-16229

Disclosure Date: October 03, 2019 (last updated November 08, 2023)
The DCCP parser in tcpdump before 4.9.3 has a buffer over-read in print-dccp.c:dccp_print_option().
Attacker Value
Unknown

CVE-2018-16451

Disclosure Date: October 03, 2019 (last updated November 08, 2023)
The SMB parser in tcpdump before 4.9.3 has buffer over-reads in print-smb.c:print_trans() for \MAILSLOT\BROWSE and \PIPE\LANMAN.