Show filters
205 Total Results
Displaying 41-50 of 205
Sort by:
Attacker Value
Unknown

CVE-2018-20185

Disclosure Date: December 17, 2018 (last updated November 27, 2024)
In GraphicsMagick 1.4 snapshot-20181209 Q8 on 32-bit platforms, there is a heap-based buffer over-read in the ReadBMPImage function of bmp.c, which allows attackers to cause a denial of service via a crafted bmp image file. This only affects GraphicsMagick installations with customized BMP limits.
Attacker Value
Unknown

CVE-2018-15686

Disclosure Date: October 26, 2018 (last updated November 08, 2023)
A vulnerability in unit_deserialize of systemd allows an attacker to supply arbitrary state across systemd re-execution via NotifyAccess. This can be used to improperly influence systemd execution and possibly lead to root privilege escalation. Affected releases are systemd versions up to and including 239.
Attacker Value
Unknown

CVE-2018-14650

Disclosure Date: September 27, 2018 (last updated November 27, 2024)
It was discovered that sos-collector does not properly set the default permissions of newly created files, making all files created by the tool readable by any local user. A local attacker may use this flaw by waiting for a legit user to run sos-collector and steal the collected data in the /var/tmp directory.
0
Attacker Value
Unknown

CVE-2018-14337

Disclosure Date: July 17, 2018 (last updated November 27, 2024)
The CHECK macro in mrbgems/mruby-sprintf/src/sprintf.c in mruby 1.4.1 contains a signed integer overflow, possibly leading to out-of-bounds memory access because the mrb_str_resize function in string.c does not check for a negative length.
Attacker Value
Unknown

CVE-2018-12249

Disclosure Date: June 12, 2018 (last updated November 26, 2024)
An issue was discovered in mruby 1.4.1. There is a NULL pointer dereference in mrb_class_real because "class BasicObject" is not properly supported in class.c.
Attacker Value
Unknown

CVE-2018-11743

Disclosure Date: June 05, 2018 (last updated November 26, 2024)
The init_copy function in kernel.c in mruby 1.4.1 makes initialize_copy calls for TT_ICLASS objects, which allows attackers to cause a denial of service (mrb_hash_keys uninitialized pointer and application crash) or possibly have unspecified other impact.
Attacker Value
Unknown

CVE-2018-8741

Disclosure Date: March 17, 2018 (last updated November 08, 2023)
A directory traversal flaw in SquirrelMail 1.4.22 allows an authenticated attacker to exfiltrate (or potentially delete) files from the hosting server, related to ../ in the att_local_name field in Deliver.class.php.
0
Attacker Value
Unknown

CVE-2017-2896

Disclosure Date: November 20, 2017 (last updated November 26, 2024)
An exploitable out-of-bounds write vulnerability exists in the xls_mergedCells function of libxls 1.4. . A specially crafted XLS file can cause a memory corruption resulting in remote code execution. An attacker can send malicious XLS file to trigger this vulnerability.
Attacker Value
Unknown

CVE-2017-15924

Disclosure Date: October 27, 2017 (last updated November 26, 2024)
In manager.c in ss-manager in shadowsocks-libev 3.1.0, improper parsing allows command injection via shell metacharacters in a JSON configuration request received via 127.0.0.1 UDP traffic, related to the add_server, build_config, and construct_command_line functions.
0
Attacker Value
Unknown

CVE-2016-8734

Disclosure Date: October 16, 2017 (last updated November 08, 2023)
Apache Subversion's mod_dontdothat module and HTTP clients 1.4.0 through 1.8.16, and 1.9.0 through 1.9.4 are vulnerable to a denial-of-service attack caused by exponential XML entity expansion. The attack can cause the targeted process to consume an excessive amount of CPU resources or memory.
0