CVE-2018-10846
- EPSS 0.01%
- Veröffentlicht 22.08.2018 13:29:00
- Zuletzt bearbeitet 21.11.2024 03:42:07
A cache-based side channel in GnuTLS implementation that leads to plain text recovery in cross-VM attack setting was found. An attacker could use a combination of "Just in Time" Prime+probe attack in combination with Lucky-13 attack to recover plain ...
CVE-2018-10902
- EPSS 0.08%
- Veröffentlicht 21.08.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 03:42:15
It was found that the raw midi kernel driver does not protect against concurrent access which leads to a double realloc (double free) in snd_rawmidi_input_params() and snd_rawmidi_output_status() which are part of snd_rawmidi_ioctl() handler in rawmi...
CVE-2018-15599
- EPSS 0.52%
- Veröffentlicht 21.08.2018 01:29:00
- Zuletzt bearbeitet 21.11.2024 03:51:08
The recv_msg_userauth_request function in svr-auth.c in Dropbear through 2018.76 is prone to a user enumeration vulnerability because username validity affects how fields in SSH_MSG_USERAUTH messages are handled, a similar issue to CVE-2018-15473 in ...
CVE-2018-1000222
- EPSS 1.28%
- Veröffentlicht 20.08.2018 20:29:01
- Zuletzt bearbeitet 21.11.2024 03:39:58
Libgd version 2.2.5 contains a Double Free Vulnerability vulnerability in gdImageBmpPtr Function that can result in Remote Code Execution . This attack appear to be exploitable via Specially Crafted Jpeg Image can trigger double free. This vulnerabil...
CVE-2018-1000637
- EPSS 0.4%
- Veröffentlicht 20.08.2018 19:31:34
- Zuletzt bearbeitet 21.11.2024 03:40:17
zutils version prior to version 1.8-pre2 contains a Buffer Overflow vulnerability in zcat that can result in Potential denial of service or arbitrary code execution. This attack appear to be exploitable via the victim openning a crafted compressed fi...
CVE-2018-1000632
- EPSS 1.61%
- Veröffentlicht 20.08.2018 19:31:31
- Zuletzt bearbeitet 21.11.2024 03:40:16
dom4j version prior to version 2.1.1 contains a CWE-91: XML Injection vulnerability in Class: Element. Methods: addElement, addAttribute that can result in an attacker tampering with XML documents through XML injection. This attack appear to be explo...
CVE-2018-15594
- EPSS 0.07%
- Veröffentlicht 20.08.2018 08:29:00
- Zuletzt bearbeitet 21.11.2024 03:51:08
arch/x86/kernel/paravirt.c in the Linux kernel before 4.18.1 mishandles certain indirect calls, which makes it easier for attackers to conduct Spectre-v2 attacks against paravirtual guests.
CVE-2018-15572
- EPSS 0.07%
- Veröffentlicht 20.08.2018 02:29:00
- Zuletzt bearbeitet 21.11.2024 03:51:05
The spectre_v2_select_mitigation function in arch/x86/kernel/cpu/bugs.c in the Linux kernel before 4.18.1 does not always fill RSB upon a context switch, which makes it easier for attackers to conduct userspace-userspace spectreRSB attacks.
CVE-2018-15494
- EPSS 0.64%
- Veröffentlicht 18.08.2018 02:29:01
- Zuletzt bearbeitet 21.11.2024 03:50:56
In Dojo Toolkit before 1.14, there is unescaped string injection in dojox/Grid/DataGrid.
CVE-2018-15501
- EPSS 0.34%
- Veröffentlicht 18.08.2018 02:29:01
- Zuletzt bearbeitet 21.11.2024 03:50:56
In ng_pkt in transports/smart_pkt.c in libgit2 before 0.26.6 and 0.27.x before 0.27.4, a remote attacker can send a crafted smart-protocol "ng" packet that lacks a '\0' byte to trigger an out-of-bounds read that leads to DoS.