Netapp

Element Software

100 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 2.5%
  • Veröffentlicht 19.09.2018 09:29:00
  • Zuletzt bearbeitet 21.11.2024 03:54:02

An issue was discovered in the Linux kernel through 4.18.8. The vmacache_flush_all function in mm/vmacache.c mishandles sequence number overflows. An attacker can trigger a use-after-free (and possibly gain privileges) via certain thread creation, ma...

  • EPSS 7.64%
  • Veröffentlicht 26.06.2018 16:29:00
  • Zuletzt bearbeitet 21.11.2024 03:32:23

In Eclipse Jetty, versions 9.2.x and older, 9.3.x (all configurations), and 9.4.x (non-default configuration with RFC2616 compliance enabled), transfer-encoding chunks are handled poorly. The chunk length parsing was vulnerable to an integer overflow...

  • EPSS 0.43%
  • Veröffentlicht 22.06.2018 19:29:00
  • Zuletzt bearbeitet 21.11.2024 03:45:23

In Eclipse Jetty versions 9.4.0 through 9.4.8, when using the optional Jetty provided FileSessionDataStore for persistent storage of HttpSession details, it is possible for a malicious user to access/hijack other HttpSessions and even delete unmatche...

  • EPSS 14.25%
  • Veröffentlicht 08.03.2018 20:29:00
  • Zuletzt bearbeitet 21.11.2024 04:11:44

Buffer overflow in the decodearr function in ntpq in ntp 4.2.8p6 through 4.2.8p10 allows remote attackers to execute arbitrary code by leveraging an ntpq query and sending a response with a crafted array.

Exploit
  • EPSS 8.14%
  • Veröffentlicht 06.03.2018 20:29:01
  • Zuletzt bearbeitet 21.11.2024 04:11:44

The ctl_getitem method in ntpd in ntp-4.2.8p6 before 4.2.8p11 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted mode 6 packet with a ntpd instance from 4.2.8p6 through 4.2.8p10.

  • EPSS 0.73%
  • Veröffentlicht 01.02.2018 14:29:00
  • Zuletzt bearbeitet 21.11.2024 04:10:45

An integer overflow in the implementation of the posix_memalign in memalign functions in the GNU C Library (aka glibc or libc6) 2.26 and earlier could cause these functions to return a pointer to a heap area that is too small, potentially leading to ...

  • EPSS 0.54%
  • Veröffentlicht 19.10.2017 17:29:05
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144. Difficult to exploit vulnerability allows unau...

  • EPSS 0.73%
  • Veröffentlicht 19.10.2017 17:29:04
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: JAXP). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144. Easily exploitable vulnerability allows unauthentic...

  • EPSS 0.58%
  • Veröffentlicht 19.10.2017 17:29:04
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Hotspot). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144. Easily exploitable vulnerability allows unauthen...

  • EPSS 0.73%
  • Veröffentlicht 19.10.2017 17:29:04
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Vulnerability in the Java SE, JRockit component of Oracle Java SE (subcomponent: Serialization). Supported versions that are affected are Java SE: 6u161, 7u151, 8u144 and 9; Java SE Embedded: 8u144. Easily exploitable vulnerability allows unauthentic...