CVE-2018-19139
- EPSS 0.48%
- Published 09.11.2018 21:29:00
- Last modified 21.11.2024 03:57:24
An issue has been found in JasPer 2.0.14. There is a memory leak in jas_malloc.c when called from jpc_unk_getparms in jpc_cs.c.
CVE-2011-1011
- EPSS 0.04%
- Published 24.02.2011 21:00:18
- Last modified 11.04.2025 00:51:21
The seunshare_mount function in sandbox/seunshare.c in seunshare in certain Red Hat packages of policycoreutils 2.0.83 and earlier in Red Hat Enterprise Linux (RHEL) 6 and earlier, and Fedora 14 and earlier, mounts a new directory on top of /tmp with...
CVE-2009-3080
- EPSS 0.07%
- Published 20.11.2009 17:30:00
- Last modified 09.04.2025 00:30:58
Array index error in the gdth_read_event function in drivers/scsi/gdth.c in the Linux kernel before 2.6.32-rc8 allows local users to cause a denial of service or possibly gain privileges via a negative event index in an IOCTL request.
CVE-2009-1573
- EPSS 0.07%
- Published 06.05.2009 17:30:09
- Last modified 09.04.2025 00:30:58
xvfb-run 1.6.1 in Debian GNU/Linux, Ubuntu, Fedora 10, and possibly other operating systems place the magic cookie (MCOOKIE) on the command line, which allows local users to gain privileges by listing the process and its arguments.
CVE-2008-3832
- EPSS 0.1%
- Published 03.10.2008 17:41:40
- Last modified 09.04.2025 00:30:58
A certain Fedora patch for the utrace subsystem in the Linux kernel before 2.6.26.5-28 on Fedora 8, and before 2.6.26.5-45 on Fedora 9, allows local users to cause a denial of service (NULL pointer dereference and system crash or hang) via a call to ...
CVE-2008-3524
- EPSS 0.03%
- Published 29.09.2008 17:17:29
- Last modified 09.04.2025 00:30:58
rc.sysinit in initscripts before 8.76.3-1 on Fedora 9 and other Linux platforms allows local users to delete arbitrary files via a symlink attack on a file or directory under (1) /var/lock or (2) /var/run.
CVE-2007-5962
- EPSS 18.83%
- Published 22.05.2008 13:09:00
- Last modified 09.04.2025 00:30:58
Memory leak in a certain Red Hat patch, applied to vsftpd 2.0.5 on Red Hat Enterprise Linux (RHEL) 5 and Fedora 6 through 8, and on Foresight Linux and rPath appliances, allows remote attackers to cause a denial of service (memory consumption) via a ...
- EPSS 5.56%
- Published 12.01.2008 02:46:00
- Last modified 09.04.2025 00:30:58
The xmlCurrentChar function in libxml2 before 2.6.31 allows context-dependent attackers to cause a denial of service (infinite loop) via XML containing invalid UTF-8 sequences.
CVE-2007-4134
- EPSS 1.91%
- Published 30.08.2007 22:17:00
- Last modified 09.04.2025 00:30:58
Directory traversal vulnerability in extract.c in star before 1.5a84 allows user-assisted remote attackers to overwrite arbitrary files via certain //.. (slash slash dot dot) sequences in directory symlinks in a TAR archive.