Show filters
43 Total Results
Displaying 31-40 of 43
Sort by:
Attacker Value
Unknown
osc executes spec code during "osc commit"
Disclosure Date: March 01, 2018 (last updated November 08, 2023)
A shell command injection in the obs-service-source_validator before 0.7 could be used to execute code as the packager when checking RPM SPEC files with specific macro constructs.
0
Attacker Value
Unknown
CVE-2017-7536
Disclosure Date: January 10, 2018 (last updated November 08, 2023)
In Hibernate Validator 5.2.x before 5.2.5 final, 5.3.x, and 5.4.x, it was found that when the security manager's reflective permissions, which allows it to access the private members of the class, are granted to Hibernate Validator, a potential privilege escalation can occur. By allowing the calling code to access those private members without the permission an attacker may be able to validate an invalid instance and access the private member value via ConstraintViolation#getInvalidValue().
0
Attacker Value
Unknown
CVE-2017-12801
Disclosure Date: November 10, 2017 (last updated November 26, 2024)
The UpdateDataSize function in ebmlmaster.c in libebml2 through 2012-08-26 allows remote attackers to cause a denial of service (assert fault) via a crafted mkv file.
0
Attacker Value
Unknown
CVE-2017-12783
Disclosure Date: November 10, 2017 (last updated November 26, 2024)
The ReadDataFloat function in ebmlnumber.c in libebml2 through 2012-08-26 allows remote attackers to cause a denial of service (assert fault) via a crafted mkv file.
0
Attacker Value
Unknown
CVE-2017-12802
Disclosure Date: November 10, 2017 (last updated November 26, 2024)
The EBML_IntegerValue function in ebmlnumber.c in libebml2 through 2012-08-26 allows remote attackers to cause a denial of service (assert fault) via a crafted mkv file.
0
Attacker Value
Unknown
CVE-2017-12779
Disclosure Date: November 10, 2017 (last updated November 26, 2024)
The Node_GetData function in corec/corec/node/node.c in mkvalidator 0.5.1 allows remote attackers to cause a denial of service (Null pointer dereference and application crash) via a crafted mkv file.
0
Attacker Value
Unknown
CVE-2017-12781
Disclosure Date: November 10, 2017 (last updated November 26, 2024)
The EBML_BufferToID function in ebmlelement.c in libebml2 through 2012-08-26 allows remote attackers to cause a denial of service (Null pointer dereference and application crash) via a crafted mkv file.
0
Attacker Value
Unknown
CVE-2017-12800
Disclosure Date: November 10, 2017 (last updated November 26, 2024)
The EBML_FindNextElement function in ebmlmain.c in libebml2 through 2012-08-26 allows remote attackers to cause a denial of service (Null pointer dereference and application crash) via a crafted mkv file.
0
Attacker Value
Unknown
CVE-2017-12782
Disclosure Date: November 10, 2017 (last updated November 26, 2024)
The ReadData function in ebmlmaster.c in libebml2 through 2012-08-26 allows remote attackers to cause a denial of service (assert fault) via a crafted mkv file.
0
Attacker Value
Unknown
CVE-2017-12780
Disclosure Date: November 10, 2017 (last updated November 26, 2024)
The ReadData function in ebmlstring.c in libebml2 through 2012-08-26 allows remote attackers to cause a denial of service (invalid free and application crash) via a crafted mkv file.
0