CVE-2014-8130
- EPSS 2.08%
- Veröffentlicht 12.03.2018 02:29:00
- Zuletzt bearbeitet 21.11.2024 02:18:37
The _TIFFmalloc function in tif_unix.c in LibTIFF 4.0.3 does not reject a zero size, which allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted TIFF image that is mishandled by the TIFFWriteS...
CVE-2016-9591
- EPSS 0.48%
- Veröffentlicht 09.03.2018 20:29:00
- Zuletzt bearbeitet 21.11.2024 03:01:28
JasPer before version 2.0.12 is vulnerable to a use-after-free in the way it decodes certain JPEG 2000 image files resulting in a crash on the application using JasPer.
CVE-2018-1071
- EPSS 0.07%
- Veröffentlicht 09.03.2018 15:29:00
- Zuletzt bearbeitet 21.11.2024 03:59:07
zsh through version 5.4.2 is vulnerable to a stack-based buffer overflow in the exec.c:hashcmd() function. A local attacker could exploit this to cause a denial of service.
CVE-2018-1054
- EPSS 6.85%
- Veröffentlicht 07.03.2018 13:29:00
- Zuletzt bearbeitet 21.11.2024 03:59:04
An out-of-bounds memory read flaw was found in the way 389-ds-base handled certain LDAP search filters, affecting all versions including 1.4.x. A remote, unauthenticated attacker could potentially use this flaw to make ns-slapd crash via a specially ...
CVE-2018-7740
- EPSS 0.08%
- Veröffentlicht 07.03.2018 08:29:00
- Zuletzt bearbeitet 21.11.2024 04:12:38
The resv_map_release function in mm/hugetlb.c in the Linux kernel through 4.15.7 allows local users to cause a denial of service (BUG) via a crafted application that makes mmap system calls and has a large pgoff argument to the remap_file_pages syste...
CVE-2018-5729
- EPSS 0.44%
- Veröffentlicht 06.03.2018 20:29:00
- Zuletzt bearbeitet 05.05.2025 14:14:33
MIT krb5 1.6 or later allows an authenticated kadmin with permission to add principals to an LDAP Kerberos database to cause a denial of service (NULL pointer dereference) or bypass a DN container check by supplying tagged data that is internal to th...
CVE-2018-5730
- EPSS 1.11%
- Veröffentlicht 06.03.2018 20:29:00
- Zuletzt bearbeitet 05.05.2025 14:12:56
MIT krb5 1.6 or later allows an authenticated kadmin with permission to add principals to an LDAP Kerberos database to circumvent a DN containership check by supplying both a "linkdn" and "containerdn" database argument, or by supplying a DN string w...
CVE-2018-7725
- EPSS 0.35%
- Veröffentlicht 06.03.2018 17:29:00
- Zuletzt bearbeitet 10.07.2025 15:44:54
An issue was discovered in ZZIPlib 0.13.68. An invalid memory address dereference was discovered in zzip_disk_fread in mmapped.c. The vulnerability causes an application crash, which leads to denial of service.
CVE-2018-7726
- EPSS 0.35%
- Veröffentlicht 06.03.2018 17:29:00
- Zuletzt bearbeitet 10.07.2025 15:44:54
An issue was discovered in ZZIPlib 0.13.68. There is a bus error caused by the __zzip_parse_root_directory function of zip.c. Attackers could leverage this vulnerability to cause a denial of service via a crafted zip file.
CVE-2018-7727
- EPSS 0.09%
- Veröffentlicht 06.03.2018 17:29:00
- Zuletzt bearbeitet 10.07.2025 15:44:54
An issue was discovered in ZZIPlib 0.13.68. There is a memory leak triggered in the function zzip_mem_disk_new in memdisk.c, which will lead to a denial of service attack.