CVE-2017-3145
- EPSS 5.77%
- Published 16.01.2019 20:29:00
- Last modified 21.11.2024 03:24:55
BIND was improperly sequencing cleanup operations on upstream recursion fetch contexts, leading in some cases to a use-after-free error that can trigger an assertion failure and crash in named. Affects BIND 9.0.0 to 9.8.x, 9.9.0 to 9.9.11, 9.10.0 to ...
CVE-2018-5733
- EPSS 29.51%
- Published 16.01.2019 20:29:00
- Last modified 25.04.2025 23:15:15
A malicious client which is allowed to send very large amounts of traffic (billions of packets) to a DHCP server can eventually overflow a 32-bit reference counter, potentially causing dhcpd to crash. Affects ISC DHCP 4.1.0 -> 4.1-ESV-R15, 4.2.0 -> 4...
CVE-2019-2529
- EPSS 0.21%
- Published 16.01.2019 19:30:35
- Last modified 21.11.2024 04:41:03
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 5.6.42 and prior, 5.7.24 and prior and 8.0.13 and prior. Easily exploitable vulnerability allows low privileged at...
CVE-2019-2503
- EPSS 0.14%
- Published 16.01.2019 19:30:34
- Last modified 21.11.2024 04:41:00
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Connection Handling). Supported versions that are affected are 5.6.42 and prior, 5.7.24 and prior and 8.0.13 and prior. Difficult to exploit vulnerability allows low p...
CVE-2019-2449
- EPSS 2.56%
- Published 16.01.2019 19:30:32
- Last modified 21.11.2024 04:40:53
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Deployment). The supported version that is affected is Java SE: 8u192. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protoco...
CVE-2019-2455
- EPSS 0.17%
- Published 16.01.2019 19:30:32
- Last modified 21.11.2024 04:40:54
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Parser). Supported versions that are affected are 5.6.42 and prior, 5.7.24 and prior and 8.0.13 and prior. Easily exploitable vulnerability allows low privileged attac...
CVE-2019-2422
- EPSS 0.24%
- Published 16.01.2019 19:30:31
- Last modified 21.11.2024 04:40:50
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 7u201, 8u192 and 11.0.1; Java SE Embedded: 8u191. Difficult to exploit vulnerability allows unauthenticated attacker...
CVE-2018-16886
- EPSS 0.74%
- Published 14.01.2019 19:29:00
- Last modified 21.11.2024 03:53:32
etcd versions 3.2.x before 3.2.26 and 3.3.x before 3.3.11 are vulnerable to an improper authentication issue when role-based access control (RBAC) is used and client-cert-auth is enabled. If an etcd client server TLS certificate contains a Common Nam...
CVE-2018-16865
- EPSS 2.07%
- Published 11.01.2019 21:29:00
- Last modified 21.11.2024 03:53:28
An allocation of memory without limits, that could result in the stack clashing with another memory region, was discovered in systemd-journald when many entries are sent to the journal socket. A local attacker, or a remote one if systemd-journal-remo...
CVE-2018-16864
- EPSS 0.15%
- Published 11.01.2019 20:29:00
- Last modified 21.11.2024 03:53:28
An allocation of memory without limits, that could result in the stack clashing with another memory region, was discovered in systemd-journald when a program with long command line arguments calls syslog. A local attacker may use this flaw to crash s...