Show filters
92 Total Results
Displaying 1-10 of 92
Sort by:
Attacker Value
Unknown

CVE-2017-5753

Disclosure Date: January 04, 2018 (last updated January 15, 2025)
Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a side-channel analysis.
Attacker Value
Unknown

CVE-2015-7542

Disclosure Date: December 03, 2019 (last updated November 27, 2024)
A vulnerability exists in libgwenhywfar through 4.12.0 due to the usage of outdated bundled CA certificates.
Attacker Value
Unknown

CVE-2016-4983

Disclosure Date: November 05, 2019 (last updated November 27, 2024)
A postinstall script in the dovecot rpm allows local users to read the contents of newly created SSL/TLS key files.
Attacker Value
Unknown

CVE-2016-1000002

Disclosure Date: November 05, 2019 (last updated November 27, 2024)
gdm3 3.14.2 and possibly later has an information leak before screen lock
Attacker Value
Unknown

CVE-2017-5331

Disclosure Date: November 04, 2019 (last updated November 27, 2024)
Integer overflow in the check_offset function in b/wrestool/fileread.c in icoutils before 0.31.1 allows local users to cause a denial of service (process crash) and execute arbitrary code via a crafted executable.
Attacker Value
Unknown

CVE-2017-5332

Disclosure Date: November 04, 2019 (last updated November 27, 2024)
The extract_group_icon_cursor_resource in wrestool/extract.c in icoutils before 0.31.1 can access unallocated memory, which allows local users to cause a denial of service (process crash) and execute arbitrary code via a crafted executable.
Attacker Value
Unknown

CVE-2017-5333

Disclosure Date: November 04, 2019 (last updated November 27, 2024)
Integer overflow in the extract_group_icon_cursor_resource function in b/wrestool/extract.c in icoutils before 0.31.1 allows local users to cause a denial of service (process crash) or execute arbitrary code via a crafted executable file.
Attacker Value
Unknown

CVE-2015-8980

Disclosure Date: November 04, 2019 (last updated November 27, 2024)
The plural form formula in ngettext family of calls in php-gettext before 1.0.12 allows remote attackers to execute arbitrary code.
Attacker Value
Unknown

CVE-2017-16232

Disclosure Date: March 21, 2019 (last updated November 08, 2023)
LibTIFF 4.0.8 has multiple memory leak vulnerabilities, which allow attackers to cause a denial of service (memory consumption), as demonstrated by tif_open.c, tif_lzw.c, and tif_aux.c. NOTE: Third parties were unable to reproduce the issue
0
Attacker Value
Unknown

package builds could use directory traversal to write outside of target area

Disclosure Date: March 01, 2018 (last updated November 08, 2023)
The build package before 20171128 did not check directory names during extraction of build results that allowed untrusted builds to write outside of the target system,allowing escape out of buildroots.
0