- EPSS 27.65%
- Published 03.01.2018 06:29:00
- Last modified 03.01.2025 12:15:25
The tcpmss_mangle_packet function in net/netfilter/xt_TCPMSS.c in the Linux kernel before 4.11, and 4.9.x before 4.9.36, allows remote attackers to cause a denial of service (use-after-free and memory corruption) or possibly have unspecified other im...
CVE-2017-16997
- EPSS 0.63%
- Published 18.12.2017 01:29:00
- Last modified 20.04.2025 01:37:25
elf/dl-load.c in the GNU C Library (aka glibc or libc6) 2.19 through 2.26 mishandles RPATH and RUNPATH containing $ORIGIN for a privileged (setuid or AT_SECURE) program, which allows local users to gain privileges via a Trojan horse library in the cu...
CVE-2017-17405
- EPSS 89.02%
- Published 15.12.2017 09:29:00
- Last modified 20.04.2025 01:37:25
Ruby before 2.4.3 allows Net::FTP command injection. Net::FTP#get, getbinaryfile, gettextfile, put, putbinaryfile, and puttextfile use Kernel#open to open a local file. If the localfile argument starts with the "|" pipe character, the command followi...
CVE-2017-11305
- EPSS 2.47%
- Published 13.12.2017 21:29:00
- Last modified 20.04.2025 01:37:25
A regression affecting Adobe Flash Player version 27.0.0.187 (and earlier versions) causes the unintended reset of the global settings preference file when a user clears browser data.
CVE-2017-1000407
- EPSS 0.46%
- Published 11.12.2017 21:29:00
- Last modified 20.04.2025 01:37:25
The Linux Kernel 2.6.32 and later are affected by a denial of service, by flooding the diagnostic port 0x80 an exception can be triggered leading to a kernel panic.
- EPSS 9.68%
- Published 09.12.2017 06:29:03
- Last modified 20.04.2025 01:37:25
An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability occurs as a result of a computation that reads data that is past the end of the target buffer; the computation is part of AdobePSDK metadata. The use of...
- EPSS 9.68%
- Published 09.12.2017 06:29:03
- Last modified 20.04.2025 01:37:25
An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability occurs as a result of a computation that reads data that is past the end of the target buffer; the computation is part of providing language- and region...
- EPSS 11.38%
- Published 09.12.2017 06:29:00
- Last modified 20.04.2025 01:37:25
An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability occurs as a result of a computation that reads data that is past the end of the target buffer due to an integer overflow; the computation is part of the...
- EPSS 5.82%
- Published 09.12.2017 06:29:00
- Last modified 20.04.2025 01:37:25
An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability is an instance of a use after free vulnerability in the Primetime SDK. The mismatch between an old and a new object can provide an attacker with uninten...
- EPSS 5.82%
- Published 09.12.2017 06:29:00
- Last modified 20.04.2025 01:37:25
An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability is an instance of a use after free vulnerability in the Primetime SDK metadata functionality. The mismatch between an old and a new object can provide a...