CVE-2019-7395
- EPSS 3.54%
- Veröffentlicht 05.02.2019 00:29:00
- Zuletzt bearbeitet 21.11.2024 04:48:08
In ImageMagick before 7.0.8-25, a memory leak exists in WritePSDChannel in coders/psd.c.
CVE-2019-7396
- EPSS 3.54%
- Veröffentlicht 05.02.2019 00:29:00
- Zuletzt bearbeitet 21.11.2024 04:48:08
In ImageMagick before 7.0.8-25, a memory leak exists in ReadSIXELImage in coders/sixel.c.
CVE-2019-7397
- EPSS 0.26%
- Veröffentlicht 05.02.2019 00:29:00
- Zuletzt bearbeitet 21.11.2024 04:48:08
In ImageMagick before 7.0.8-25 and GraphicsMagick through 1.3.31, several memory leaks exist in WritePDFImage in coders/pdf.c.
CVE-2019-7398
- EPSS 0.23%
- Veröffentlicht 05.02.2019 00:29:00
- Zuletzt bearbeitet 21.11.2024 04:48:09
In ImageMagick before 7.0.8-25, a memory leak exists in WriteDIBImage in coders/dib.c.
CVE-2019-1000018
- EPSS 0.29%
- Veröffentlicht 04.02.2019 21:29:01
- Zuletzt bearbeitet 19.03.2025 20:15:15
rssh version 2.3.4 contains a CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability in allowscp permission that can result in Local command execution. This attack appear to be exploitable via An aut...
CVE-2019-1000019
- EPSS 1.91%
- Veröffentlicht 04.02.2019 21:29:01
- Zuletzt bearbeitet 21.11.2024 04:17:41
libarchive version commit bf9aec176c6748f0ee7a678c5f9f9555b9a757c1 onwards (release v3.0.2 onwards) contains a CWE-125: Out-of-bounds Read vulnerability in 7zip decompression, archive_read_support_format_7zip.c, header_bytes() that can result in a cr...
CVE-2019-1000020
- EPSS 1.09%
- Veröffentlicht 04.02.2019 21:29:01
- Zuletzt bearbeitet 21.11.2024 04:17:41
libarchive version commit 5a98dcf8a86364b3c2c469c85b93647dfb139961 onwards (version v2.8.0 onwards) contains a CWE-835: Loop with Unreachable Exit Condition ('Infinite Loop') vulnerability in ISO9660 parser, archive_read_support_format_iso9660.c, rea...
- EPSS 0.06%
- Veröffentlicht 04.02.2019 18:29:00
- Zuletzt bearbeitet 21.11.2024 04:42:05
Debian tmpreaper version 1.6.13+nmu1 has a race condition when doing a (bind) mount via rename() which could result in local privilege escalation. Mounting via rename() could potentially lead to a file being placed elsewhereon the filesystem hierarch...
CVE-2019-3813
- EPSS 0.26%
- Veröffentlicht 04.02.2019 18:29:00
- Zuletzt bearbeitet 21.11.2024 04:42:35
Spice, versions 0.5.2 through 0.14.1, are vulnerable to an out-of-bounds read due to an off-by-one error in memslot_get_virt. This may lead to a denial of service, or, in the worst case, code-execution by unauthenticated attackers.
CVE-2019-7317
- EPSS 0.58%
- Veröffentlicht 04.02.2019 08:29:00
- Zuletzt bearbeitet 21.11.2024 04:48:00
png_image_free in png.c in libpng 1.6.x before 1.6.37 has a use-after-free because png_image_free_function is called under png_safe_execute.