CVE-2018-16890
- EPSS 1.42%
- Published 06.02.2019 20:29:00
- Last modified 21.11.2024 03:53:32
libcurl versions from 7.36.0 to before 7.64.0 is vulnerable to a heap buffer out-of-bounds read. The function handling incoming NTLM type-2 messages (`lib/vauth/ntlm.c:ntlm_decode_type2_target`) does not validate incoming data correctly and is subjec...
CVE-2018-11219
- EPSS 3.48%
- Published 17.06.2018 17:29:00
- Last modified 21.11.2024 03:42:55
An Integer Overflow issue was discovered in the struct library in the Lua subsystem in Redis before 3.2.12, 4.x before 4.0.10, and 5.x before 5.0 RC2, leading to a failure of bounds checking.
CVE-2018-11218
- EPSS 18.92%
- Published 17.06.2018 17:29:00
- Last modified 21.11.2024 03:42:55
Memory Corruption was discovered in the cmsgpack library in the Lua subsystem in Redis before 3.2.12, 4.x before 4.0.10, and 5.x before 5.0 RC2 because of stack-based buffer overflows.
CVE-2017-3730
- EPSS 46.04%
- Published 04.05.2017 19:29:00
- Last modified 20.04.2025 01:37:25
In OpenSSL 1.1.0 before 1.1.0d, if a malicious server supplies bad parameters for a DHE or ECDHE key exchange then this can result in the client attempting to dereference a NULL pointer leading to a client crash. This could be exploited in a Denial o...
CVE-2016-3513
- EPSS 0.63%
- Published 21.07.2016 10:13:06
- Last modified 12.04.2025 10:46:40
Unspecified vulnerability in the Oracle Communications Operations Monitor component in Oracle Communications Applications before 3.3.92.0.0 allows remote authenticated users to affect confidentiality via vectors related to Infrastructure.