CVE-2017-15873
- EPSS 0.14%
- Veröffentlicht 24.10.2017 20:29:00
- Zuletzt bearbeitet 09.06.2025 16:15:26
The get_next_block function in archival/libarchive/decompress_bunzip2.c in BusyBox 1.27.2 has an Integer Overflow that may lead to a write access violation.
CVE-2017-12613
- EPSS 0.25%
- Veröffentlicht 24.10.2017 01:29:02
- Zuletzt bearbeitet 20.04.2025 01:37:25
When apr_time_exp*() or apr_os_exp_time*() functions are invoked with an invalid month field value in Apache Portable Runtime APR 1.6.2 and prior, out of bounds memory may be accessed in converting this value to an apr_time_exp_t value, potentially r...
CVE-2017-15721
- EPSS 1.14%
- Veröffentlicht 22.10.2017 20:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In Irssi before 1.0.5, certain incorrectly formatted DCC CTCP messages could cause a NULL pointer dereference. This is a separate, but similar, issue relative to CVE-2017-9468.
CVE-2017-15722
- EPSS 1.08%
- Veröffentlicht 22.10.2017 20:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In certain cases, Irssi before 1.0.5 may fail to verify that a Safe channel ID is long enough, causing reads beyond the end of the string.
CVE-2017-15723
- EPSS 1.11%
- Veröffentlicht 22.10.2017 20:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In Irssi before 1.0.5, overlong nicks or targets may result in a NULL pointer dereference while splitting the message.
CVE-2015-5177
- EPSS 1.26%
- Veröffentlicht 22.10.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Double free vulnerability in the SLPDKnownDAAdd function in slpd/slpd_knownda.c in OpenSLP 1.2.1 allows remote attackers to cause a denial of service (crash) via a crafted package.
CVE-2013-6049
- EPSS 0.07%
- Veröffentlicht 20.10.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
apt-listbugs before 0.1.10 creates temporary files insecurely, which allows attackers to have unspecified impact via unknown vectors.
CVE-2017-15642
- EPSS 0.64%
- Veröffentlicht 19.10.2017 19:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In lsx_aiffstartread in aiff.c in Sound eXchange (SoX) 14.4.2, there is a Use-After-Free vulnerability triggered by supplying a malformed AIFF file.
CVE-2017-10378
- EPSS 0.3%
- Veröffentlicht 19.10.2017 17:29:05
- Zuletzt bearbeitet 20.04.2025 01:37:25
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that are affected are 5.5.57 and earlier, 5.6.37 and earlier and 5.7.11 and earlier. Easily exploitable vulnerability allows low privile...
CVE-2017-10379
- EPSS 0.35%
- Veröffentlicht 19.10.2017 17:29:05
- Zuletzt bearbeitet 20.04.2025 01:37:25
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Client programs). Supported versions that are affected are 5.5.57 and earlier, 5.6.37 and earlier and 5.7.19 and earlier. Easily exploitable vulnerability allows low privilege...