CVE-2017-13765
- EPSS 1.18%
- Veröffentlicht 30.08.2017 09:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In Wireshark 2.4.0, 2.2.0 to 2.2.8, and 2.0.0 to 2.0.14, the IrCOMM dissector has a buffer over-read and application crash. This was addressed in plugins/irda/packet-ircomm.c by adding length validation.
CVE-2017-13768
- EPSS 0.88%
- Veröffentlicht 30.08.2017 09:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Null Pointer Dereference in the IdentifyImage function in MagickCore/identify.c in ImageMagick through 7.0.6-10 allows an attacker to perform denial of service by sending a crafted image file.
CVE-2017-13769
- EPSS 0.53%
- Veröffentlicht 30.08.2017 09:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The WriteTHUMBNAILImage function in coders/thumbnail.c in ImageMagick through 7.0.6-10 allows an attacker to cause a denial of service (buffer over-read) by sending a crafted JPEG file.
CVE-2017-13775
- EPSS 2.15%
- Veröffentlicht 30.08.2017 09:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
GraphicsMagick 1.3.26 has a denial of service issue in ReadJNXImage() in coders/jnx.c whereby large amounts of CPU and memory resources may be consumed although the file itself does not support the requests.
CVE-2017-13776
- EPSS 1.07%
- Veröffentlicht 30.08.2017 09:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coders/xbm.c "Read hex image data" version!=10 case that results in the reader not returning; it would cause large amounts of CPU and memory consumption although the crafted f...
CVE-2017-13777
- EPSS 1.07%
- Veröffentlicht 30.08.2017 09:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
GraphicsMagick 1.3.26 has a denial of service issue in ReadXBMImage() in a coders/xbm.c "Read hex image data" version==10 case that results in the reader not returning; it would cause large amounts of CPU and memory consumption although the crafted f...
CVE-2017-13760
- EPSS 0.23%
- Veröffentlicht 29.08.2017 23:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In The Sleuth Kit (TSK) 4.4.2, fls hangs on a corrupt exfat image in tsk_img_read() in tsk/img/img_io.c in libtskimg.a.
CVE-2017-0379
- EPSS 1.86%
- Veröffentlicht 29.08.2017 22:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Libgcrypt before 1.8.1 does not properly consider Curve25519 side-channel attacks, which makes it easier for attackers to discover a secret key, related to cipher/ecc.c and mpi/ec.c.
CVE-2017-13755
- EPSS 0.27%
- Veröffentlicht 29.08.2017 22:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In The Sleuth Kit (TSK) 4.4.2, opening a crafted ISO 9660 image triggers an out-of-bounds read in iso9660_proc_dir() in tsk/fs/iso9660_dent.c in libtskfs.a, as demonstrated by fls.
CVE-2017-13756
- EPSS 0.21%
- Veröffentlicht 29.08.2017 22:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In The Sleuth Kit (TSK) 4.4.2, opening a crafted disk image triggers infinite recursion in dos_load_ext_table() in tsk/vs/dos.c in libtskvs.a, as demonstrated by mmls.