CVE-2017-3474
- EPSS 0.39%
- Veröffentlicht 24.04.2017 19:59:01
- Zuletzt bearbeitet 13.05.2026 00:24:29
Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Zone). The supported version that is affected is 11.3. Easily "exploitable" vulnerability allows low privileged attacker with logon to the infrastructure where...
CVE-2016-4483
- EPSS 6.17%
- Veröffentlicht 11.04.2017 16:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The xmlBufAttrSerializeTxtContent function in xmlsave.c in libxml2 allows context-dependent attackers to cause a denial of service (out-of-bounds read and application crash) via a non-UTF-8 attribute value, related to serialization. NOTE: this vulne...
CVE-2017-3301
- EPSS 0.43%
- Veröffentlicht 27.01.2017 22:59:04
- Zuletzt bearbeitet 13.05.2026 00:24:29
Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Kernel). The supported version that is affected is 11.3. Easily exploitable vulnerability allows unauthenticated attacker with logon to the infrastructure wher...
CVE-2017-3276
- EPSS 0.33%
- Veröffentlicht 27.01.2017 22:59:03
- Zuletzt bearbeitet 13.05.2026 00:24:29
Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Kernel Zones virtualized block driver). The supported version that is affected is 11.3. Difficult to exploit vulnerability allows high privileged attacker with...
CVE-2016-8330
- EPSS 1.16%
- Veröffentlicht 27.01.2017 22:59:01
- Zuletzt bearbeitet 13.05.2026 00:24:29
Vulnerability in the Solaris component of Oracle Sun Systems Products Suite (subcomponent: Kernel). The supported version that is affected is 11.3. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple pr...
CVE-2016-2334
- EPSS 14.74%
- Veröffentlicht 13.12.2016 22:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
Heap-based buffer overflow in the NArchive::NHfs::CHandler::ExtractZlibFile method in 7zip before 16.00 and p7zip allows remote attackers to execute arbitrary code via a crafted HFS+ image.
CVE-2016-6491
- EPSS 5.02%
- Veröffentlicht 13.12.2016 15:59:09
- Zuletzt bearbeitet 06.05.2026 22:30:45
Buffer overflow in the Get8BIMProperty function in MagickCore/property.c in ImageMagick before 6.9.5-4 and 7.x before 7.0.2-6 allows remote attackers to cause a denial of service (out-of-bounds read, memory leak, and crash) via a crafted image.
CVE-2016-5842
- EPSS 6.46%
- Veröffentlicht 13.12.2016 15:59:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
MagickCore/property.c in ImageMagick before 7.0.2-1 allows remote attackers to obtain sensitive memory information via vectors involving the q variable, which triggers an out-of-bounds read.
CVE-2016-5841
- EPSS 13.39%
- Veröffentlicht 13.12.2016 15:59:06
- Zuletzt bearbeitet 06.05.2026 22:30:45
Integer overflow in MagickCore/profile.c in ImageMagick before 7.0.2-1 allows remote attackers to cause a denial of service (segmentation fault) or possibly execute arbitrary code via vectors involving the offset variable.
CVE-2016-5691
- EPSS 5.45%
- Veröffentlicht 13.12.2016 15:59:04
- Zuletzt bearbeitet 06.05.2026 22:30:45
The DCM reader in ImageMagick before 6.9.4-5 and 7.x before 7.0.1-7 allows remote attackers to have unspecified impact by leveraging lack of validation of (1) pixel.red, (2) pixel.green, and (3) pixel.blue.