Show filters
172 Total Results
Displaying 71-80 of 172
Sort by:
Attacker Value
Unknown

CVE-2018-8791

Disclosure Date: February 05, 2019 (last updated November 27, 2024)
rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function rdpdr_process() that results in an information leak.
0
Attacker Value
Unknown

CVE-2018-8796

Disclosure Date: February 05, 2019 (last updated November 27, 2024)
rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function process_bitmap_updates() that results in a Denial of Service (segfault).
0
Attacker Value
Unknown

CVE-2018-8797

Disclosure Date: February 05, 2019 (last updated November 27, 2024)
rdesktop versions up to and including v1.8.3 contain a Heap-Based Buffer Overflow in function process_plane() that results in a memory corruption and probably even a remote code execution.
Attacker Value
Unknown

CVE-2018-8799

Disclosure Date: February 05, 2019 (last updated November 27, 2024)
rdesktop versions up to and including v1.8.3 contain an Out-Of-Bounds Read in function process_secondary_order() that results in a Denial of Service (segfault).
0
Attacker Value
Unknown

CVE-2019-7310

Disclosure Date: February 03, 2019 (last updated November 08, 2023)
In Poppler 0.73.0, a heap-based buffer over-read (due to an integer signedness error in the XRef::getEntry function in XRef.cc) allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted PDF document, as demonstrated by pdftocairo.
Attacker Value
Unknown

CVE-2018-20681

Disclosure Date: January 09, 2019 (last updated November 27, 2024)
mate-screensaver before 1.20.2 in MATE Desktop Environment allows physically proximate attackers to view screen content and possibly control applications. By unplugging and re-plugging or power-cycling external output devices (such as additionally attached graphical outputs via HDMI, VGA, DVI, etc.) the content of a screensaver-locked session can be revealed. In some scenarios, the attacker can execute applications, such as by clicking with a mouse.
0
Attacker Value
Unknown

CVE-2018-20662

Disclosure Date: January 03, 2019 (last updated November 08, 2023)
In Poppler 0.72.0, PDFDoc::setup in PDFDoc.cc allows attackers to cause a denial-of-service (application crash caused by Object.h SIGABRT, because of a wrong return value from PDFDoc::setup) by crafting a PDF file in which an xref data structure is mishandled during extractPDFSubtype processing.
Attacker Value
Unknown

CVE-2018-20650

Disclosure Date: January 01, 2019 (last updated November 27, 2024)
A reachable Object::dictLookup assertion in Poppler 0.72.0 allows attackers to cause a denial of service due to the lack of a check for the dict data type, as demonstrated by use of the FileSpec class (in FileSpec.cc) in pdfdetach.
Attacker Value
Unknown

CVE-2018-20551

Disclosure Date: December 28, 2018 (last updated November 27, 2024)
A reachable Object::getString assertion in Poppler 0.72.0 allows attackers to cause a denial of service due to construction of invalid rich media annotation assets in the AnnotRichMedia class in Annot.c.
0
Attacker Value
Unknown

CVE-2018-20481

Disclosure Date: December 26, 2018 (last updated November 27, 2024)
XRef::getEntry in XRef.cc in Poppler 0.72.0 mishandles unallocated XRef entries, which allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted PDF document, when XRefEntry::setFlag in XRef.h is called from Parser::makeStream in Parser.cc.
0