Show filters
43 Total Results
Displaying 31-40 of 43
Sort by:
Attacker Value
Unknown

osc executes spec code during "osc commit"

Disclosure Date: March 01, 2018 (last updated November 08, 2023)
A shell command injection in the obs-service-source_validator before 0.7 could be used to execute code as the packager when checking RPM SPEC files with specific macro constructs.
0
Attacker Value
Unknown

CVE-2017-7536

Disclosure Date: January 10, 2018 (last updated November 08, 2023)
In Hibernate Validator 5.2.x before 5.2.5 final, 5.3.x, and 5.4.x, it was found that when the security manager's reflective permissions, which allows it to access the private members of the class, are granted to Hibernate Validator, a potential privilege escalation can occur. By allowing the calling code to access those private members without the permission an attacker may be able to validate an invalid instance and access the private member value via ConstraintViolation#getInvalidValue().
Attacker Value
Unknown

CVE-2017-12801

Disclosure Date: November 10, 2017 (last updated November 26, 2024)
The UpdateDataSize function in ebmlmaster.c in libebml2 through 2012-08-26 allows remote attackers to cause a denial of service (assert fault) via a crafted mkv file.
0
Attacker Value
Unknown

CVE-2017-12783

Disclosure Date: November 10, 2017 (last updated November 26, 2024)
The ReadDataFloat function in ebmlnumber.c in libebml2 through 2012-08-26 allows remote attackers to cause a denial of service (assert fault) via a crafted mkv file.
0
Attacker Value
Unknown

CVE-2017-12802

Disclosure Date: November 10, 2017 (last updated November 26, 2024)
The EBML_IntegerValue function in ebmlnumber.c in libebml2 through 2012-08-26 allows remote attackers to cause a denial of service (assert fault) via a crafted mkv file.
0
Attacker Value
Unknown

CVE-2017-12779

Disclosure Date: November 10, 2017 (last updated November 26, 2024)
The Node_GetData function in corec/corec/node/node.c in mkvalidator 0.5.1 allows remote attackers to cause a denial of service (Null pointer dereference and application crash) via a crafted mkv file.
0
Attacker Value
Unknown

CVE-2017-12781

Disclosure Date: November 10, 2017 (last updated November 26, 2024)
The EBML_BufferToID function in ebmlelement.c in libebml2 through 2012-08-26 allows remote attackers to cause a denial of service (Null pointer dereference and application crash) via a crafted mkv file.
0
Attacker Value
Unknown

CVE-2017-12800

Disclosure Date: November 10, 2017 (last updated November 26, 2024)
The EBML_FindNextElement function in ebmlmain.c in libebml2 through 2012-08-26 allows remote attackers to cause a denial of service (Null pointer dereference and application crash) via a crafted mkv file.
0
Attacker Value
Unknown

CVE-2017-12782

Disclosure Date: November 10, 2017 (last updated November 26, 2024)
The ReadData function in ebmlmaster.c in libebml2 through 2012-08-26 allows remote attackers to cause a denial of service (assert fault) via a crafted mkv file.
0
Attacker Value
Unknown

CVE-2017-12780

Disclosure Date: November 10, 2017 (last updated November 26, 2024)
The ReadData function in ebmlstring.c in libebml2 through 2012-08-26 allows remote attackers to cause a denial of service (invalid free and application crash) via a crafted mkv file.
0