CVE-2016-8743
- EPSS 8.41%
- Veröffentlicht 27.07.2017 21:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Apache HTTP Server, in all releases prior to 2.2.32 and 2.4.25, was liberal in the whitespace accepted from requests and sent in response lines and headers. Accepting these different behaviors represented a security concern when httpd participates in...
CVE-2017-11683
- EPSS 0.48%
- Veröffentlicht 27.07.2017 06:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
There is a reachable assertion in the Internal::TiffReader::visitDirectory function in tiffvisitor.cpp of Exiv2 0.26 that will lead to a remote denial of service attack via crafted input.
CVE-2017-9611
- EPSS 0.39%
- Veröffentlicht 26.07.2017 19:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The Ins_MIRP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified other impact via a crafted document.
CVE-2017-9612
- EPSS 0.39%
- Veröffentlicht 26.07.2017 19:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The Ins_IP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (use-after-free and application crash) or possibly have unspecified other impact via a crafted document.
CVE-2017-9726
- EPSS 0.39%
- Veröffentlicht 26.07.2017 19:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The Ins_MDRP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified other impact via a crafted document.
CVE-2017-9727
- EPSS 0.39%
- Veröffentlicht 26.07.2017 19:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The gx_ttfReader__Read function in base/gxttfb.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified other impact via a crafted doc...
CVE-2017-9739
- EPSS 0.39%
- Veröffentlicht 26.07.2017 19:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The Ins_JMPR function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) or possibly have unspecified other impact via a crafted document.
CVE-2017-9835
- EPSS 0.37%
- Veröffentlicht 26.07.2017 19:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The gs_alloc_ref_array function in psi/ialloc.c in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted PostScript doc...
CVE-2017-9233
- EPSS 0.25%
- Veröffentlicht 25.07.2017 20:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
XML External Entity vulnerability in libexpat 2.2.0 and earlier (Expat XML Parser Library) allows attackers to put the parser in an infinite loop using a malformed external entity definition from an external DTD.
CVE-2017-11434
- EPSS 0.05%
- Veröffentlicht 25.07.2017 18:29:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
The dhcp_decode function in slirp/bootp.c in QEMU (aka Quick Emulator) allows local guest OS users to cause a denial of service (out-of-bounds read and QEMU process crash) via a crafted DHCP options string.