CVE-2018-20544
- EPSS 0.98%
- Veröffentlicht 28.12.2018 16:29:04
- Zuletzt bearbeitet 21.11.2024 04:01:41
There is floating point exception at caca/dither.c (function caca_dither_bitmap) in libcaca 0.99.beta19.
CVE-2018-20546
- EPSS 2.27%
- Veröffentlicht 28.12.2018 16:29:04
- Zuletzt bearbeitet 21.11.2024 04:01:42
There is an illegal READ memory access at caca/dither.c (function get_rgba_default) in libcaca 0.99.beta19 for the default bpp case.
CVE-2018-20547
- EPSS 0.86%
- Veröffentlicht 28.12.2018 16:29:04
- Zuletzt bearbeitet 21.11.2024 04:01:42
There is an illegal READ memory access at caca/dither.c (function get_rgba_default) in libcaca 0.99.beta19 for 24bpp data.
CVE-2018-1000888
- EPSS 29.48%
- Veröffentlicht 28.12.2018 16:29:01
- Zuletzt bearbeitet 21.11.2024 03:40:35
PEAR Archive_Tar version 1.4.3 and earlier contains a CWE-502, CWE-915 vulnerability in the Archive_Tar class. There are several file operations with `$v_header['filename']` as parameter (such as file_exists, is_file, is_dir, etc). When extract is ca...
CVE-2018-20511
- EPSS 0.07%
- Veröffentlicht 27.12.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 04:01:38
An issue was discovered in the Linux kernel before 4.18.11. The ipddp_ioctl function in drivers/net/appletalk/ipddp.c allows local users to obtain sensitive kernel address information by leveraging CAP_NET_ADMIN to read the ipddp_route dev and next f...
CVE-2018-19870
- EPSS 2.17%
- Veröffentlicht 26.12.2018 21:29:02
- Zuletzt bearbeitet 21.11.2024 03:58:43
An issue was discovered in Qt before 5.11.3. A malformed GIF image causes a NULL pointer dereference in QGifHandler resulting in a segmentation fault.
CVE-2018-19873
- EPSS 8.23%
- Veröffentlicht 26.12.2018 21:29:02
- Zuletzt bearbeitet 11.02.2025 20:11:38
An issue was discovered in Qt before 5.11.3. QBmpHandler has a buffer overflow via BMP data.
CVE-2018-20217
- EPSS 4.38%
- Veröffentlicht 26.12.2018 21:29:02
- Zuletzt bearbeitet 21.11.2024 04:01:06
A Reachable Assertion issue was discovered in the KDC in MIT Kerberos 5 (aka krb5) before 1.17. If an attacker can obtain a krbtgt ticket using an older encryption type (single-DES, triple-DES, or RC4), the attacker can crash the KDC by making an S4U...
CVE-2018-15518
- EPSS 3.4%
- Veröffentlicht 26.12.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 03:50:59
QXmlStream in Qt 5.x before 5.11.3 has a double-free or corruption during parsing of a specially crafted illegal XML document.
CVE-2018-20482
- EPSS 0.02%
- Veröffentlicht 26.12.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 04:01:34
GNU Tar through 1.30, when --sparse is used, mishandles file shrinkage during read access, which allows local users to cause a denial of service (infinite read loop in sparse_dump_region in sparse.c) by modifying a file that is supposed to be archive...