Show filters
820 Total Results
Displaying 691-700 of 820
Sort by:
Attacker Value
Unknown
CVE-2018-17847
Disclosure Date: October 01, 2018 (last updated November 08, 2023)
The html package (aka x/net/html) through 2018-09-25 in Go mishandles <svg><template><desc><t><svg></template>, leading to a "panic: runtime error" (index out of range) in (*nodeStack).pop in node.go, called from (*parser).clearActiveFormattingElements, during an html.Parse call.
0
Attacker Value
Unknown
CVE-2018-17205
Disclosure Date: September 19, 2018 (last updated November 27, 2024)
An issue was discovered in Open vSwitch (OvS) 2.7.x through 2.7.6, affecting ofproto_rule_insert__ in ofproto/ofproto.c. During bundle commit, flows that are added in a bundle are applied to ofproto in order. If a flow cannot be added (e.g., the flow action is a go-to for a group id that does not exist), OvS tries to revert back all previous flows that were successfully applied from the same bundle. This is possible since OvS maintains list of old flows that were replaced by flows from the bundle. While reinserting old flows, OvS has an assertion failure due to a check on rule state != RULE_INITIALIZED. This would work for new flows, but for an old flow the rule state is RULE_REMOVED. The assertion failure causes an OvS crash.
0
Attacker Value
Unknown
CVE-2018-11787
Disclosure Date: September 18, 2018 (last updated November 08, 2023)
In Apache Karaf version prior to 3.0.9, 4.0.9, 4.1.1, when the webconsole feature is installed in Karaf, it is available at .../system/console and requires authentication to access it. One part of the console is a Gogo shell/console that gives access to the command line console of Karaf via a Web browser, and when navigated to it is available at .../system/console/gogo. Trying to go directly to that URL does require authentication. And optional bundle that some applications use is the Pax Web Extender Whiteboard, it is part of the pax-war feature and perhaps others. When it is installed, the Gogo console becomes available at another URL .../gogo/, and that URL is not secured giving access to the Karaf console to unauthenticated users. A mitigation for the issue is to manually stop/uninstall Gogo plugin bundle that is installed with the webconsole feature, although of course this removes the console from the .../system/console application, not only from the unauthenticated endpoint. On…
0
Attacker Value
Unknown
CVE-2018-17143
Disclosure Date: September 17, 2018 (last updated November 08, 2023)
The html package (aka x/net/html) through 2018-09-17 in Go mishandles <template><tBody><isindex/action=0>, leading to a "panic: runtime error" in inBodyIM in parse.go during an html.Parse call.
0
Attacker Value
Unknown
CVE-2018-17142
Disclosure Date: September 17, 2018 (last updated November 08, 2023)
The html package (aka x/net/html) through 2018-09-17 in Go mishandles <math><template><mo><template>, leading to a "panic: runtime error" in parseCurrentToken in parse.go during an html.Parse call.
0
Attacker Value
Unknown
CVE-2018-17075
Disclosure Date: September 16, 2018 (last updated November 08, 2023)
The html package (aka x/net/html) before 2018-07-13 in Go mishandles "in frameset" insertion mode, leading to a "panic: runtime error" for html.Parse of <template><object>, <template><applet>, or <template><marquee>. This is related to HTMLTreeBuilder.cpp in WebKit.
0
Attacker Value
Unknown
CVE-2018-16733
Disclosure Date: September 08, 2018 (last updated November 27, 2024)
In Go Ethereum (aka geth) before 1.8.14, TraceChain in eth/api_tracer.go does not verify that the end block is after the start block.
0
Attacker Value
Unknown
CVE-2018-16302
Disclosure Date: September 01, 2018 (last updated November 27, 2024)
MediaComm Zip-n-Go before 4.95 has a Buffer Overflow via a crafted file.
0
Attacker Value
Unknown
CVE-2018-14341
Disclosure Date: July 19, 2018 (last updated November 08, 2023)
In Wireshark 2.6.0 to 2.6.1, 2.4.0 to 2.4.7, and 2.2.0 to 2.2.15, the DICOM dissector could go into a large or infinite loop. This was addressed in epan/dissectors/packet-dcm.c by preventing an offset overflow.
0
Attacker Value
Unknown
CVE-2018-14339
Disclosure Date: July 19, 2018 (last updated November 08, 2023)
In Wireshark 2.6.0 to 2.6.1, 2.4.0 to 2.4.7, and 2.2.0 to 2.2.15, the MMSE dissector could go into an infinite loop. This was addressed in epan/proto.c by adding offset and length validation.
0