CVE-2018-8976
- EPSS 0.3%
- Veröffentlicht 25.03.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 04:14:43
In Exiv2 0.26, jpgimage.cpp allows remote attackers to cause a denial of service (image.cpp Exiv2::Internal::stringFormat out-of-bounds read) via a crafted file.
CVE-2018-1000140
- EPSS 42.51%
- Veröffentlicht 23.03.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 03:39:46
rsyslog librelp version 1.2.14 and earlier contains a Buffer Overflow vulnerability in the checking of x509 certificates from a peer that can result in Remote code execution. This attack appear to be exploitable a remote attacker that can connect to ...
CVE-2018-8945
- EPSS 0.17%
- Veröffentlicht 22.03.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 04:14:39
The bfd_section_from_shdr function in elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.30, allows remote attackers to cause a denial of service (segmentation fault) via a large attribute section.
CVE-2018-8905
- EPSS 1.14%
- Veröffentlicht 22.03.2018 04:29:00
- Zuletzt bearbeitet 21.11.2024 04:14:34
In LibTIFF 4.0.9, a heap-based buffer overflow occurs in the function LZWDecodeCompat in tif_lzw.c via a crafted TIFF file, as demonstrated by tiff2ps.
CVE-2018-8088
- EPSS 0.84%
- Veröffentlicht 20.03.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 04:13:14
org.slf4j.ext.EventData in the slf4j-ext module in QOS.CH SLF4J before 1.8.0-beta2 allows remote attackers to bypass intended access restrictions via crafted data. EventData in the slf4j-ext module in QOS.CH SLF4J, has been fixed in SLF4J versions 1....
CVE-2018-1068
- EPSS 0.04%
- Veröffentlicht 16.03.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 03:59:06
A flaw was found in the Linux 4.x kernel's implementation of 32-bit syscall interface for bridging. This allowed a privileged user to arbitrarily write to a limited range of kernel memory.
CVE-2018-1000120
- EPSS 1.64%
- Veröffentlicht 14.03.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:39:43
A buffer overflow exists in curl 7.12.3 to and including curl 7.58.0 in the FTP URL handling that allows an attacker to cause a denial of service or worse.
CVE-2018-1000121
- EPSS 2.81%
- Veröffentlicht 14.03.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:39:43
A NULL pointer dereference exists in curl 7.21.0 to and including curl 7.58.0 in the LDAP code that allows an attacker to cause a denial of service
CVE-2018-1000122
- EPSS 1.75%
- Veröffentlicht 14.03.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:39:43
A buffer over-read exists in curl 7.20.0 to and including curl 7.58.0 in the RTSP+RTP handling code that allows an attacker to cause a denial of service or information leakage
CVE-2018-7750
- EPSS 16.05%
- Veröffentlicht 13.03.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 04:12:39
transport.py in the SSH server implementation of Paramiko before 1.17.6, 1.18.x before 1.18.5, 2.0.x before 2.0.8, 2.1.x before 2.1.5, 2.2.x before 2.2.3, 2.3.x before 2.3.2, and 2.4.x before 2.4.1 does not properly check whether authentication is co...