CVE-2018-6392
- EPSS 0.57%
- Veröffentlicht 29.01.2018 19:29:01
- Zuletzt bearbeitet 21.11.2024 04:10:37
The filter_slice function in libavfilter/vf_transpose.c in FFmpeg through 3.4.1 allows remote attackers to cause a denial of service (out-of-array access) via a crafted MP4 file.
CVE-2017-18078
- EPSS 0.08%
- Veröffentlicht 29.01.2018 05:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:18
systemd-tmpfiles in systemd before 237 attempts to support ownership/permission changes on hardlinked files even if the fs.protected_hardlinks sysctl is turned off, which allows local users to bypass intended access restrictions via vectors involving...
CVE-2018-6360
- EPSS 0.56%
- Veröffentlicht 28.01.2018 02:29:01
- Zuletzt bearbeitet 21.11.2024 04:10:33
mpv through 0.28.0 allows remote attackers to execute arbitrary code via a crafted web site, because it reads HTML documents containing VIDEO elements, and accepts arbitrary URLs in a src attribute without a protocol whitelist in player/lua/ytdl_hook...
CVE-2018-6358
- EPSS 0.58%
- Veröffentlicht 27.01.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 04:10:33
The printDefineFont2 function (util/listfdb.c) in libming through 0.4.8 is vulnerable to a heap-based buffer overflow, which may allow attackers to cause a denial of service or unspecified other impact via a crafted FDB file.
CVE-2018-6359
- EPSS 0.98%
- Veröffentlicht 27.01.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 04:10:33
The decompileIF function (util/decompile.c) in libming through 0.4.8 is vulnerable to a use-after-free, which may allow attackers to cause a denial of service or unspecified other impact via a crafted SWF file.
CVE-2017-12374
- EPSS 4.84%
- Veröffentlicht 26.01.2018 20:29:00
- Zuletzt bearbeitet 21.11.2024 03:09:24
The ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a lack of input valid...
CVE-2017-12375
- EPSS 6.46%
- Veröffentlicht 26.01.2018 20:29:00
- Zuletzt bearbeitet 21.11.2024 03:09:24
The ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to a lack of input valid...
CVE-2017-12376
- EPSS 9.9%
- Veröffentlicht 26.01.2018 20:29:00
- Zuletzt bearbeitet 21.11.2024 03:09:24
ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or potentially execute arbitrary code on an affected device. The vulnerabili...
- EPSS 11.42%
- Veröffentlicht 26.01.2018 20:29:00
- Zuletzt bearbeitet 21.11.2024 03:09:25
ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition or potentially execute arbitrary code on an affected device. The vulnerabili...
CVE-2017-12378
- EPSS 5.1%
- Veröffentlicht 26.01.2018 20:29:00
- Zuletzt bearbeitet 21.11.2024 03:09:25
ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. The vulnerability is due to improper input validation...