Show filters
104 Total Results
Displaying 1-10 of 104
Sort by:
Attacker Value
Unknown

CVE-2011-1002

Disclosure Date: February 22, 2011 (last updated December 23, 2023)
avahi-core/socket.c in avahi-daemon in Avahi before 0.6.29 allows remote attackers to cause a denial of service (infinite loop) via an empty mDNS (1) IPv4 or (2) IPv6 UDP packet to port 5353. NOTE: this vulnerability exists because of an incorrect fix for CVE-2010-2244.
5
Attacker Value
Unknown

CVE-2023-4255

Disclosure Date: December 21, 2023 (last updated January 03, 2024)
An out-of-bounds write issue has been discovered in the backspace handling of the checkType() function in etc.c within the W3M application. This vulnerability is triggered by supplying a specially crafted HTML file to the w3m binary. Exploitation of this flaw could lead to application crashes, resulting in a denial of service condition.
Attacker Value
Unknown

CVE-2023-38253

Disclosure Date: July 14, 2023 (last updated December 30, 2023)
An out-of-bounds read flaw was found in w3m, in the growbuf_to_Str function in indep.c. This issue may allow an attacker to cause a denial of service through a crafted HTML file.
Attacker Value
Unknown

CVE-2023-38252

Disclosure Date: July 14, 2023 (last updated April 25, 2024)
An out-of-bounds read flaw was found in w3m, in the Strnew_size function in Str.c. This issue may allow an attacker to cause a denial of service through a crafted HTML file.
Attacker Value
Unknown

CVE-2021-33477

Disclosure Date: May 20, 2021 (last updated November 08, 2023)
rxvt-unicode 9.22, rxvt 2.7.10, mrxvt 0.5.4, and Eterm 0.9.7 allow (potentially remote) code execution because of improper handling of certain escape sequences (ESC G Q). A response is terminated by a newline.
Attacker Value
Unknown

CVE-2012-5630

Disclosure Date: November 25, 2019 (last updated November 27, 2024)
libuser 0.56 and 0.57 has a TOCTOU (time-of-check time-of-use) race condition when copying and removing directory trees.
Attacker Value
Unknown

CVE-2009-5042

Disclosure Date: October 31, 2019 (last updated November 27, 2024)
python-docutils allows insecure usage of temporary files
Attacker Value
Unknown

CVE-2018-18585

Disclosure Date: October 23, 2018 (last updated November 27, 2024)
chmd_read_headers in mspack/chmd.c in libmspack before 0.8alpha accepts a filename that has '\0' as its first or second character (such as the "/\0" name).
Attacker Value
Unknown

CVE-2018-18584

Disclosure Date: October 23, 2018 (last updated November 27, 2024)
In mspack/cab.h in libmspack before 0.8alpha and cabextract before 1.8, the CAB block input buffer is one byte too small for the maximal Quantum block, leading to an out-of-bounds write.
Attacker Value
Unknown

CVE-2018-14679

Disclosure Date: July 28, 2018 (last updated November 27, 2024)
An issue was discovered in mspack/chmd.c in libmspack before 0.7alpha. There is an off-by-one error in the CHM PMGI/PMGL chunk number validity checks, which could lead to denial of service (uninitialized data dereference and application crash).
0