CVE-2017-10661
- EPSS 27.64%
- Veröffentlicht 19.08.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Race condition in fs/timerfd.c in the Linux kernel before 4.10.15 allows local users to gain privileges or cause a denial of service (list corruption or use-after-free) via simultaneous file-descriptor operations that leverage improper might_cancel q...
CVE-2017-12935
- EPSS 0.87%
- Veröffentlicht 18.08.2017 12:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The ReadMNGImage function in coders/png.c in GraphicsMagick 1.3.26 mishandles large MNG images, leading to an invalid memory read in the SetImageColorCallBack function in magick/image.c.
CVE-2017-12936
- EPSS 1.9%
- Veröffentlicht 18.08.2017 12:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The ReadWMFImage function in coders/wmf.c in GraphicsMagick 1.3.26 has a use-after-free issue for data associated with exception reporting.
CVE-2017-12937
- EPSS 0.95%
- Veröffentlicht 18.08.2017 12:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The ReadSUNImage function in coders/sun.c in GraphicsMagick 1.3.26 has a colormap heap-based buffer over-read.
CVE-2017-7546
- EPSS 31.12%
- Veröffentlicht 16.08.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
PostgreSQL versions before 9.2.22, 9.3.18, 9.4.13, 9.5.8 and 9.6.4 are vulnerable to incorrect authentication flaw allowing remote attackers to gain access to database accounts with an empty password.
CVE-2017-7548
- EPSS 0.75%
- Veröffentlicht 16.08.2017 18:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
PostgreSQL versions before 9.4.13, 9.5.8 and 9.6.4 are vulnerable to authorization flaw allowing remote authenticated attackers with no privileges on a large object to overwrite the entire contents of the object, resulting in a denial of service.
CVE-2017-12862
- EPSS 1.98%
- Veröffentlicht 15.08.2017 16:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In modules/imgcodecs/src/grfmt_pxm.cpp, the length of buffer AutoBuffer _src is small than expected, which will cause copy buffer overflow later. If the image is from remote, may lead to remote code execution or denial of service. This affects Opencv...
CVE-2017-12863
- EPSS 1.59%
- Veröffentlicht 15.08.2017 16:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In opencv/modules/imgcodecs/src/grfmt_pxm.cpp, function PxMDecoder::readData has an integer overflow when calculate src_pitch. If the image is from remote, may lead to remote code execution or denial of service. This affects Opencv 3.3 and earlier.
CVE-2017-12864
- EPSS 1.59%
- Veröffentlicht 15.08.2017 16:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In opencv/modules/imgcodecs/src/grfmt_pxm.cpp, function ReadNumber did not checkout the input length, which lead to integer overflow. If the image is from remote, may lead to remote code execution or denial of service. This affects Opencv 3.3 and ear...
CVE-2016-6796
- EPSS 0.75%
- Veröffentlicht 11.08.2017 02:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
A malicious web application running on Apache Tomcat 9.0.0.M1 to 9.0.0.M9, 8.5.0 to 8.5.4, 8.0.0.RC1 to 8.0.36, 7.0.0 to 7.0.70 and 6.0.0 to 6.0.45 was able to bypass a configured SecurityManager via manipulation of the configuration parameters for t...