Oracle

Outside In Technology

199 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.36%
  • Veröffentlicht 20.01.2021 15:15:49
  • Zuletzt bearbeitet 21.11.2024 06:02:18

Vulnerability in the Oracle Outside In Technology product of Oracle Fusion Middleware (component: Outside In Filters). Supported versions that are affected are 8.5.4 and 8.5.5. Easily exploitable vulnerability allows unauthenticated attacker with net...

  • EPSS 1.44%
  • Veröffentlicht 05.01.2021 18:15:14
  • Zuletzt bearbeitet 21.11.2024 05:21:54

There's a flaw in openjpeg's t2 encoder in versions prior to 2.4.0. An attacker who is able to provide crafted input to be processed by openjpeg could cause a null pointer dereference. The highest impact of this flaw is to application availability.

  • EPSS 1.68%
  • Veröffentlicht 05.01.2021 18:15:14
  • Zuletzt bearbeitet 21.11.2024 05:21:55

A flaw was found in OpenJPEG in versions prior to 2.4.0. This flaw allows an attacker to provide specially crafted input to the conversion or encoding functionality, causing an out-of-bounds read. The highest threat from this vulnerability is system ...

  • EPSS 1.33%
  • Veröffentlicht 05.01.2021 18:15:14
  • Zuletzt bearbeitet 21.11.2024 05:21:55

A flaw was found in openjpeg's src/lib/openjp2/t2.c in versions prior to 2.4.0. This flaw allows an attacker to provide crafted input to openjpeg during conversion and encoding, causing an out-of-bounds write. The highest threat from this vulnerabili...

  • EPSS 1.44%
  • Veröffentlicht 05.01.2021 18:15:14
  • Zuletzt bearbeitet 21.11.2024 05:21:55

There's a flaw in src/lib/openjp2/pi.c of openjpeg in versions prior to 2.4.0. If an attacker is able to provide untrusted input to openjpeg's conversion/encoding functionality, they could cause an out-of-bounds read. The highest impact of this flaw ...

  • EPSS 1.38%
  • Veröffentlicht 05.01.2021 18:15:13
  • Zuletzt bearbeitet 21.11.2024 05:21:54

There's a flaw in openjpeg in versions prior to 2.4.0 in src/lib/openjp2/pi.c. When an attacker is able to provide crafted input to be processed by the openjpeg encoder, this could cause an out-of-bounds read. The greatest impact from this flaw is to...

  • EPSS 2.6%
  • Veröffentlicht 29.06.2020 21:15:14
  • Zuletzt bearbeitet 21.11.2024 05:05:28

jp2/opj_decompress.c in OpenJPEG through 2.3.1 has a use-after-free that can be triggered if there is a mix of valid and invalid files in a directory operated on by the decompressor. Triggering a double-free may also be possible. This is related to c...

Exploit
  • EPSS 1.03%
  • Veröffentlicht 27.06.2020 12:15:11
  • Zuletzt bearbeitet 21.11.2024 05:05:24

In SQLite before 3.32.3, select.c mishandles query-flattener optimization, leading to a multiSelectOrderBy heap overflow because of misuse of transitive properties for constant propagation.

  • EPSS 0.57%
  • Veröffentlicht 27.05.2020 15:15:13
  • Zuletzt bearbeitet 21.11.2024 05:01:38

ext/fts3/fts3_snippet.c in SQLite before 3.32.0 has a NULL pointer dereference via a crafted matchinfo() query.

  • EPSS 1.03%
  • Veröffentlicht 27.05.2020 15:15:12
  • Zuletzt bearbeitet 21.11.2024 05:01:38

ext/fts3/fts3.c in SQLite before 3.32.0 has a use-after-free in fts3EvalNextRow, related to the snippet feature.