Show filters
252 Total Results
Displaying 81-90 of 252
Sort by:
Attacker Value
Unknown

CVE-2019-18391

Disclosure Date: August 21, 2019 (last updated November 27, 2024)
A heap-based buffer overflow in the vrend_renderer_transfer_write_iov function in vrend_renderer.c in virglrenderer through 0.8.0 allows guest OS users to cause a denial of service via VIRGL_CCMD_RESOURCE_INLINE_WRITE commands.
Attacker Value
Unknown

CVE-2019-15145

Disclosure Date: August 18, 2019 (last updated November 08, 2023)
DjVuLibre 3.5.27 allows attackers to cause a denial-of-service attack (application crash via an out-of-bounds read) by crafting a corrupted JB2 image file that is mishandled in JB2Dict::JB2Codec::get_direct_context in libdjvu/JB2Image.h because of a missing zero-bytes check in libdjvu/GBitmap.h.
Attacker Value
Unknown

CVE-2019-15143

Disclosure Date: August 18, 2019 (last updated November 08, 2023)
In DjVuLibre 3.5.27, the bitmap reader component allows attackers to cause a denial-of-service error (resource exhaustion caused by a GBitmap::read_rle_raw infinite loop) by crafting a corrupted image file, related to libdjvu/DjVmDir.cpp and libdjvu/GBitmap.cpp.
Attacker Value
Unknown

CVE-2019-15142

Disclosure Date: August 18, 2019 (last updated November 08, 2023)
In DjVuLibre 3.5.27, DjVmDir.cpp in the DJVU reader component allows attackers to cause a denial-of-service (application crash in GStringRep::strdup in libdjvu/GString.cpp caused by a heap-based buffer over-read) by crafting a DJVU file.
Attacker Value
Unknown

CVE-2019-15144

Disclosure Date: August 18, 2019 (last updated November 08, 2023)
In DjVuLibre 3.5.27, the sorting functionality (aka GArrayTemplate<TYPE>::sort) allows attackers to cause a denial-of-service (application crash due to an Uncontrolled Recursion) by crafting a PBM image file that is mishandled in libdjvu/GContainer.h.
Attacker Value
Unknown

CVE-2019-10185

Disclosure Date: July 31, 2019 (last updated November 27, 2024)
It was found that icedtea-web up to and including 1.7.2 and 1.8.2 was vulnerable to a zip-slip attack during auto-extraction of a JAR file. An attacker could use this flaw to write files to arbitrary locations. This could also be used to replace the main running application and, possibly, break out of the sandbox.
Attacker Value
Unknown

CVE-2019-10181

Disclosure Date: July 31, 2019 (last updated November 27, 2024)
It was found that in icedtea-web up to and including 1.7.2 and 1.8.2 executable code could be injected in a JAR file without compromising the signature verification. An attacker could use this flaw to inject code in a trusted JAR. The code would be executed inside the sandbox.
Attacker Value
Unknown

CVE-2019-10152

Disclosure Date: July 30, 2019 (last updated November 27, 2024)
A path traversal vulnerability has been discovered in podman before version 1.4.0 in the way it handles symlinks inside containers. An attacker who has compromised an existing container can cause arbitrary files on the host filesystem to be read/written when an administrator tries to copy a file from/to the container.
Attacker Value
Unknown

CVE-2019-14275

Disclosure Date: July 26, 2019 (last updated November 27, 2024)
Xfig fig2dev 3.2.7a has a stack-based buffer overflow in the calc_arrow function in bound.c.
Attacker Value
Unknown

CVE-2019-14274

Disclosure Date: July 26, 2019 (last updated November 27, 2024)
MCPP 2.7.2 has a heap-based buffer overflow in the do_msg() function in support.c.