CVE-2018-16541
- EPSS 0.45%
- Veröffentlicht 05.09.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:52:56
In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use incorrect free logic in pagedevice replacement to crash the interpreter.
CVE-2018-16542
- EPSS 0.43%
- Veröffentlicht 05.09.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:52:56
In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use insufficient interpreter stack-size checking during error handling to crash the interpreter.
CVE-2018-16513
- EPSS 0.26%
- Veröffentlicht 05.09.2018 13:29:00
- Zuletzt bearbeitet 21.11.2024 03:52:53
In Artifex Ghostscript before 9.24, attackers able to supply crafted PostScript files could use a type confusion in the setcolor function to crash the interpreter or possibly have unspecified other impact.
CVE-2018-16509
- EPSS 91.76%
- Veröffentlicht 05.09.2018 06:29:00
- Zuletzt bearbeitet 21.11.2024 03:52:52
An issue was discovered in Artifex Ghostscript before 9.24. Incorrect "restoration of privilege" checking during handling of /invalidaccess exceptions could be used by attackers able to supply crafted PostScript to execute code using the "pipe" instr...
CVE-2018-16511
- EPSS 0.37%
- Veröffentlicht 05.09.2018 06:29:00
- Zuletzt bearbeitet 21.11.2024 03:52:52
An issue was discovered in Artifex Ghostscript before 9.24. A type confusion in "ztype" could be used by remote attackers able to supply crafted PostScript to crash the interpreter or possibly have unspecified other impact.
CVE-2018-6554
- EPSS 0.05%
- Veröffentlicht 04.09.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 04:10:53
Memory leak in the irda_bind function in net/irda/af_irda.c and later in drivers/staging/irda/net/af_irda.c in the Linux kernel before 4.17 allows local users to cause a denial of service (memory consumption) by repeatedly binding an AF_IRDA socket.
CVE-2018-6555
- EPSS 0.06%
- Veröffentlicht 04.09.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 04:10:53
The irda_setsockopt function in net/irda/af_irda.c and later in drivers/staging/irda/net/af_irda.c in the Linux kernel before 4.17 allows local users to cause a denial of service (ias_object use-after-free and system crash) or possibly have unspecifi...
CVE-2018-10929
- EPSS 1.29%
- Veröffentlicht 04.09.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 03:42:19
A flaw was found in RPC request using gfs2_create_req in glusterfs server. An authenticated attacker could use this flaw to create arbitrary files and execute arbitrary code on glusterfs server nodes.
CVE-2018-10930
- EPSS 1.45%
- Veröffentlicht 04.09.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 03:42:19
A flaw was found in RPC request using gfs3_rename_req in glusterfs server. An authenticated attacker could use this flaw to write to a destination outside the gluster volume.
CVE-2018-10926
- EPSS 1.07%
- Veröffentlicht 04.09.2018 15:29:00
- Zuletzt bearbeitet 21.11.2024 03:42:19
A flaw was found in RPC request using gfs3_mknod_req supported by glusterfs server. An authenticated attacker could use this flaw to write files to an arbitrary location via path traversal and execute arbitrary code on a glusterfs server node.