CVE-2016-1667
- EPSS 0.62%
- Veröffentlicht 14.05.2016 21:59:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
The TreeScope::adoptIfNeeded function in WebKit/Source/core/dom/TreeScope.cpp in the DOM implementation in Blink, as used in Google Chrome before 50.0.2661.102, does not prevent script execution during node-adoption operations, which allows remote at...
CVE-2016-4024
- EPSS 9.63%
- Veröffentlicht 13.05.2016 16:59:10
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer overflow in imlib2 before 1.4.9 on 32-bit platforms allows remote attackers to execute arbitrary code via large dimensions in an image, which triggers an out-of-bounds heap memory write operation.
CVE-2016-3994
- EPSS 0.99%
- Veröffentlicht 13.05.2016 16:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
The GIF loader in imlib2 before 1.4.9 allows remote attackers to cause a denial of service (application crash) or obtain sensitive information via a crafted image, which triggers an out-of-bounds read.
CVE-2016-2860
- EPSS 0.25%
- Veröffentlicht 13.05.2016 16:59:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
The newEntry function in ptserver/ptprocs.c in OpenAFS before 1.6.17 allows remote authenticated users from foreign Kerberos realms to bypass intended access restrictions and create arbitrary groups as administrators by leveraging mishandling of the ...
CVE-2016-3993
- EPSS 1.1%
- Veröffentlicht 13.05.2016 16:59:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
Off-by-one error in the __imlib_MergeUpdate function in lib/updates.c in imlib2 before 1.4.9 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via crafted coordinates.
CVE-2015-8312
- EPSS 0.04%
- Veröffentlicht 13.05.2016 16:59:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
Off-by-one error in afs_pioctl.c in OpenAFS before 1.6.16 might allow local users to cause a denial of service (memory overwrite and system crash) via a pioctl with an input buffer size of 4096 bytes.
CVE-2014-9771
- EPSS 1.18%
- Veröffentlicht 13.05.2016 16:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer overflow in imlib2 before 1.4.7 allows remote attackers to cause a denial of service (memory consumption or application crash) via a crafted image, which triggers an invalid read operation.
CVE-2014-9764
- EPSS 1.61%
- Veröffentlicht 13.05.2016 16:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
imlib2 before 1.4.7 allows remote attackers to cause a denial of service (segmentation fault) via a crafted GIF file.
CVE-2014-9763
- EPSS 1.9%
- Veröffentlicht 13.05.2016 16:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
imlib2 before 1.4.7 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted PNM file.
CVE-2014-9762
- EPSS 2.84%
- Veröffentlicht 13.05.2016 16:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
imlib2 before 1.4.7 allows remote attackers to cause a denial of service (segmentation fault) via a GIF image without a colormap.