Show filters
609 Total Results
Displaying 61-70 of 609
Sort by:
Attacker Value
Unknown
CVE-2018-16864
Disclosure Date: January 11, 2019 (last updated November 27, 2024)
An allocation of memory without limits, that could result in the stack clashing with another memory region, was discovered in systemd-journald when a program with long command line arguments calls syslog. A local attacker may use this flaw to crash systemd-journald or escalate his privileges. Versions through v240 are vulnerable.
0
Attacker Value
Unknown
CVE-2018-14721
Disclosure Date: January 02, 2019 (last updated November 08, 2023)
FasterXML jackson-databind 2.x before 2.9.7 might allow remote attackers to conduct server-side request forgery (SSRF) attacks by leveraging failure to block the axis2-jaxws class from polymorphic deserialization.
0
Attacker Value
Unknown
CVE-2018-14719
Disclosure Date: January 02, 2019 (last updated November 08, 2023)
FasterXML jackson-databind 2.x before 2.9.7 might allow remote attackers to execute arbitrary code by leveraging failure to block the blaze-ds-opt and blaze-ds-core classes from polymorphic deserialization.
0
Attacker Value
Unknown
CVE-2018-14718
Disclosure Date: January 02, 2019 (last updated November 08, 2023)
FasterXML jackson-databind 2.x before 2.9.7 might allow remote attackers to execute arbitrary code by leveraging failure to block the slf4j-ext class from polymorphic deserialization.
0
Attacker Value
Unknown
CVE-2018-14720
Disclosure Date: January 02, 2019 (last updated November 08, 2023)
FasterXML jackson-databind 2.x before 2.9.7 might allow attackers to conduct external XML entity (XXE) attacks by leveraging failure to block unspecified JDK classes from polymorphic deserialization.
0
Attacker Value
Unknown
CVE-2018-18397
Disclosure Date: December 12, 2018 (last updated November 27, 2024)
The userfaultfd implementation in the Linux kernel before 4.19.7 mishandles access control for certain UFFDIO_ ioctl calls, as demonstrated by allowing local users to write data into holes in a tmpfs file (if the user has read-only access to that file, and that file contains holes), related to fs/userfaultfd.c and mm/userfaultfd.c.
0
Attacker Value
Unknown
CVE-2018-18313
Disclosure Date: December 07, 2018 (last updated November 08, 2023)
Perl before 5.26.3 has a buffer over-read via a crafted regular expression that triggers disclosure of sensitive information from process memory.
0
Attacker Value
Unknown
CVE-2018-18311
Disclosure Date: December 07, 2018 (last updated November 08, 2023)
Perl before 5.26.3 and 5.28.x before 5.28.1 has a buffer overflow via a crafted regular expression that triggers invalid write operations.
0
Attacker Value
Unknown
CVE-2018-18314
Disclosure Date: December 07, 2018 (last updated November 08, 2023)
Perl before 5.26.3 has a buffer overflow via a crafted regular expression that triggers invalid write operations.
0
Attacker Value
Unknown
CVE-2018-18312
Disclosure Date: December 05, 2018 (last updated November 08, 2023)
Perl before 5.26.3 and 5.28.0 before 5.28.1 has a buffer overflow via a crafted regular expression that triggers invalid write operations.
0