Show filters
205 Total Results
Displaying 41-50 of 205
Sort by:
Attacker Value
Unknown
CVE-2018-20185
Disclosure Date: December 17, 2018 (last updated November 27, 2024)
In GraphicsMagick 1.4 snapshot-20181209 Q8 on 32-bit platforms, there is a heap-based buffer over-read in the ReadBMPImage function of bmp.c, which allows attackers to cause a denial of service via a crafted bmp image file. This only affects GraphicsMagick installations with customized BMP limits.
0
Attacker Value
Unknown
CVE-2018-15686
Disclosure Date: October 26, 2018 (last updated November 08, 2023)
A vulnerability in unit_deserialize of systemd allows an attacker to supply arbitrary state across systemd re-execution via NotifyAccess. This can be used to improperly influence systemd execution and possibly lead to root privilege escalation. Affected releases are systemd versions up to and including 239.
0
Attacker Value
Unknown
CVE-2018-14650
Disclosure Date: September 27, 2018 (last updated November 27, 2024)
It was discovered that sos-collector does not properly set the default permissions of newly created files, making all files created by the tool readable by any local user. A local attacker may use this flaw by waiting for a legit user to run sos-collector and steal the collected data in the /var/tmp directory.
0
Attacker Value
Unknown
CVE-2018-14337
Disclosure Date: July 17, 2018 (last updated November 27, 2024)
The CHECK macro in mrbgems/mruby-sprintf/src/sprintf.c in mruby 1.4.1 contains a signed integer overflow, possibly leading to out-of-bounds memory access because the mrb_str_resize function in string.c does not check for a negative length.
0
Attacker Value
Unknown
CVE-2018-12249
Disclosure Date: June 12, 2018 (last updated November 26, 2024)
An issue was discovered in mruby 1.4.1. There is a NULL pointer dereference in mrb_class_real because "class BasicObject" is not properly supported in class.c.
0
Attacker Value
Unknown
CVE-2018-11743
Disclosure Date: June 05, 2018 (last updated November 26, 2024)
The init_copy function in kernel.c in mruby 1.4.1 makes initialize_copy calls for TT_ICLASS objects, which allows attackers to cause a denial of service (mrb_hash_keys uninitialized pointer and application crash) or possibly have unspecified other impact.
0
Attacker Value
Unknown
CVE-2018-8741
Disclosure Date: March 17, 2018 (last updated November 08, 2023)
A directory traversal flaw in SquirrelMail 1.4.22 allows an authenticated attacker to exfiltrate (or potentially delete) files from the hosting server, related to ../ in the att_local_name field in Deliver.class.php.
0
Attacker Value
Unknown
CVE-2017-2896
Disclosure Date: November 20, 2017 (last updated November 26, 2024)
An exploitable out-of-bounds write vulnerability exists in the xls_mergedCells function of libxls 1.4. . A specially crafted XLS file can cause a memory corruption resulting in remote code execution. An attacker can send malicious XLS file to trigger this vulnerability.
0
Attacker Value
Unknown
CVE-2017-15924
Disclosure Date: October 27, 2017 (last updated November 26, 2024)
In manager.c in ss-manager in shadowsocks-libev 3.1.0, improper parsing allows command injection via shell metacharacters in a JSON configuration request received via 127.0.0.1 UDP traffic, related to the add_server, build_config, and construct_command_line functions.
0
Attacker Value
Unknown
CVE-2016-8734
Disclosure Date: October 16, 2017 (last updated November 08, 2023)
Apache Subversion's mod_dontdothat module and HTTP clients 1.4.0 through 1.8.16, and 1.9.0 through 1.9.4 are vulnerable to a denial-of-service attack caused by exponential XML entity expansion. The attack can cause the targeted process to consume an excessive amount of CPU resources or memory.
0