CVE-2017-1002201
- EPSS 0.83%
- Published 15.10.2019 18:15:10
- Last modified 21.11.2024 03:04:59
In haml versions prior to version 5.0.0.beta.2, when using user input to perform tasks on the server, characters like < > " ' must be escaped properly. In this case, the ' character was missed. An attacker can manipulate the input to introduce additi...
CVE-2019-17545
- EPSS 2.25%
- Published 14.10.2019 02:15:11
- Last modified 21.11.2024 04:32:29
GDAL through 3.0.1 has a poolDestroy double free in OGRExpatRealloc in ogr/ogr_expat.cpp when the 10MB threshold is exceeded.
CVE-2019-17539
- EPSS 0.67%
- Published 14.10.2019 02:15:10
- Last modified 21.11.2024 04:32:28
In FFmpeg before 4.2, avcodec_open2 in libavcodec/utils.c allows a NULL pointer dereference and possibly unspecified other impact when there is no valid close function pointer.
CVE-2019-17540
- EPSS 0.34%
- Published 14.10.2019 02:15:10
- Last modified 21.11.2024 04:32:29
ImageMagick before 7.0.8-54 has a heap-based buffer overflow in ReadPSInfo in coders/ps.c.
CVE-2019-17542
- EPSS 0.82%
- Published 14.10.2019 02:15:10
- Last modified 21.11.2024 04:32:29
FFmpeg before 4.2 has a heap-based buffer overflow in vqa_decode_chunk because of an out-of-array access in vqa_decode_init in libavcodec/vqavideo.c.
CVE-2019-17533
- EPSS 0.55%
- Published 13.10.2019 02:15:12
- Last modified 21.11.2024 04:32:28
Mat_VarReadNextInfo4 in mat4.c in MATIO 1.5.17 omits a certain '\0' character, leading to a heap-based buffer over-read in strdup_vprintf when uninitialized memory is accessed.
CVE-2019-17531
- EPSS 1.13%
- Published 12.10.2019 21:15:08
- Last modified 21.11.2024 04:32:27
A Polymorphic Typing issue was discovered in FasterXML jackson-databind 2.0.0 through 2.9.10. When Default Typing is enabled (either globally or for a specific property) for an externally exposed JSON endpoint and the service has the apache-log4j-ext...
CVE-2019-2215
- EPSS 51.02%
- Published 11.10.2019 19:15:10
- Last modified 24.10.2025 14:11:31
A use-after-free in binder.c allows an elevation of privilege from an application to the Linux Kernel. No user interaction is required to exploit this vulnerability, however exploitation does require either the installation of a malicious local appli...
CVE-2019-17455
- EPSS 7.08%
- Published 10.10.2019 18:15:11
- Last modified 21.11.2024 04:32:21
Libntlm through 1.5 relies on a fixed buffer size for tSmbNtlmAuthRequest, tSmbNtlmAuthChallenge, and tSmbNtlmAuthResponse read and write operations, as demonstrated by a stack-based buffer over-read in buildSmbNtlmAuthRequest in smbutil.c for a craf...
CVE-2019-17402
- EPSS 0.22%
- Published 09.10.2019 19:15:14
- Last modified 21.11.2024 04:32:16
Exiv2 0.27.2 allows attackers to trigger a crash in Exiv2::getULong in types.cpp when called from Exiv2::Internal::CiffDirectory::readDirectory in crwimage_int.cpp, because there is no validation of the relationship of the total size to the offset an...