CVE-2018-20570
- EPSS 1%
- Published 28.12.2018 16:29:05
- Last modified 21.11.2024 04:01:45
jp2_encode in jp2/jp2_enc.c in JasPer 2.0.14 has a heap-based buffer over-read.
CVE-2018-20544
- EPSS 1.02%
- Published 28.12.2018 16:29:04
- Last modified 21.11.2024 04:01:41
There is floating point exception at caca/dither.c (function caca_dither_bitmap) in libcaca 0.99.beta19.
CVE-2018-20546
- EPSS 2.37%
- Published 28.12.2018 16:29:04
- Last modified 21.11.2024 04:01:42
There is an illegal READ memory access at caca/dither.c (function get_rgba_default) in libcaca 0.99.beta19 for the default bpp case.
CVE-2018-20547
- EPSS 0.89%
- Published 28.12.2018 16:29:04
- Last modified 21.11.2024 04:01:42
There is an illegal READ memory access at caca/dither.c (function get_rgba_default) in libcaca 0.99.beta19 for 24bpp data.
CVE-2018-1000888
- EPSS 19.57%
- Published 28.12.2018 16:29:01
- Last modified 21.11.2024 03:40:35
PEAR Archive_Tar version 1.4.3 and earlier contains a CWE-502, CWE-915 vulnerability in the Archive_Tar class. There are several file operations with `$v_header['filename']` as parameter (such as file_exists, is_file, is_dir, etc). When extract is ca...
CVE-2018-20511
- EPSS 0.08%
- Published 27.12.2018 14:29:00
- Last modified 21.11.2024 04:01:38
An issue was discovered in the Linux kernel before 4.18.11. The ipddp_ioctl function in drivers/net/appletalk/ipddp.c allows local users to obtain sensitive kernel address information by leveraging CAP_NET_ADMIN to read the ipddp_route dev and next f...
CVE-2018-19870
- EPSS 2.17%
- Published 26.12.2018 21:29:02
- Last modified 21.11.2024 03:58:43
An issue was discovered in Qt before 5.11.3. A malformed GIF image causes a NULL pointer dereference in QGifHandler resulting in a segmentation fault.
CVE-2018-19873
- EPSS 8.23%
- Published 26.12.2018 21:29:02
- Last modified 11.02.2025 20:11:38
An issue was discovered in Qt before 5.11.3. QBmpHandler has a buffer overflow via BMP data.
CVE-2018-20217
- EPSS 1.59%
- Published 26.12.2018 21:29:02
- Last modified 21.11.2024 04:01:06
A Reachable Assertion issue was discovered in the KDC in MIT Kerberos 5 (aka krb5) before 1.17. If an attacker can obtain a krbtgt ticket using an older encryption type (single-DES, triple-DES, or RC4), the attacker can crash the KDC by making an S4U...
CVE-2018-15518
- EPSS 2.14%
- Published 26.12.2018 21:29:00
- Last modified 21.11.2024 03:50:59
QXmlStream in Qt 5.x before 5.11.3 has a double-free or corruption during parsing of a specially crafted illegal XML document.