CVE-2018-10392
- EPSS 1.36%
- Veröffentlicht 26.04.2018 05:29:00
- Zuletzt bearbeitet 21.11.2024 03:41:19
mapping0_forward in mapping0.c in Xiph.Org libvorbis 1.3.6 does not validate the number of channels, which allows remote attackers to cause a denial of service (heap-based buffer overflow or over-read) or possibly have unspecified other impact via a ...
CVE-2018-10393
- EPSS 0.35%
- Veröffentlicht 26.04.2018 05:29:00
- Zuletzt bearbeitet 21.11.2024 03:41:19
bark_noise_hybridmp in psy.c in Xiph.Org libvorbis 1.3.6 has a stack-based buffer over-read.
CVE-2017-2885
- EPSS 13.79%
- Veröffentlicht 24.04.2018 19:29:02
- Zuletzt bearbeitet 21.11.2024 03:24:23
An exploitable stack based buffer overflow vulnerability exists in the GNOME libsoup 2.58. A specially crafted HTTP request can cause a stack overflow resulting in remote code execution. An attacker can send a special HTTP request to the vulnerable s...
CVE-2018-1106
- EPSS 0.03%
- Veröffentlicht 23.04.2018 20:29:14
- Zuletzt bearbeitet 21.11.2024 03:59:11
An authentication bypass flaw has been found in PackageKit before 1.1.10 that allows users without administrator privileges to install signed packages. A local attacker can use this vulnerability to install vulnerable packages to further compromise a...
CVE-2017-17833
- EPSS 1.15%
- Veröffentlicht 23.04.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:18:46
OpenSLP releases in the 1.0.2 and 1.1.0 code streams have a heap-related memory corruption issue which may manifest itself as a denial-of-service or a remote code-execution vulnerability.
CVE-2018-2813
- EPSS 0.27%
- Veröffentlicht 19.04.2018 02:29:04
- Zuletzt bearbeitet 21.11.2024 04:04:31
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL). Supported versions that are affected are 5.5.59 and prior, 5.6.39 and prior and 5.7.21 and prior. Easily exploitable vulnerability allows low privileged attacker...
CVE-2018-2814
- EPSS 0.41%
- Veröffentlicht 19.04.2018 02:29:04
- Zuletzt bearbeitet 21.11.2024 04:04:31
Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Hotspot). Supported versions that are affected are Java SE: 6u181, 7u171, 8u162 and 10; Java SE Embedded: 8u161. Difficult to exploit vulnerability allows unaut...
CVE-2018-2815
- EPSS 0.63%
- Veröffentlicht 19.04.2018 02:29:04
- Zuletzt bearbeitet 06.05.2025 15:15:56
Vulnerability in the Java SE, Java SE Embedded, JRockit component of Oracle Java SE (subcomponent: Serialization). Supported versions that are affected are Java SE: 6u181, 7u171, 8u162 and 10; Java SE Embedded: 8u161; JRockit: R28.3.17. Easily exploi...
CVE-2018-2817
- EPSS 0.23%
- Veröffentlicht 19.04.2018 02:29:04
- Zuletzt bearbeitet 21.11.2024 04:04:31
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL). Supported versions that are affected are 5.5.59 and prior, 5.6.39 and prior and 5.7.21 and prior. Easily exploitable vulnerability allows low privileged attacker...
CVE-2018-2819
- EPSS 0.23%
- Veröffentlicht 19.04.2018 02:29:04
- Zuletzt bearbeitet 21.11.2024 04:04:32
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: InnoDB). Supported versions that are affected are 5.5.59 and prior, 5.6.39 and prior and 5.7.21 and prior. Easily exploitable vulnerability allows low privileged attacker with...