CVE-2017-8379
- EPSS 0.14%
- Veröffentlicht 23.05.2017 04:29:02
- Zuletzt bearbeitet 20.04.2025 01:37:25
Memory leak in the keyboard input event handlers support in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (host memory consumption) by rapidly generating large keyboard events.
CVE-2016-5177
- EPSS 1.91%
- Veröffentlicht 23.05.2017 04:29:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
Use-after-free vulnerability in V8 in Google Chrome before 53.0.2785.143 allows remote attackers to cause a denial of service (crash) or possibly have unspecified other impact via unknown vectors.
CVE-2016-5178
- EPSS 2.13%
- Veröffentlicht 23.05.2017 04:29:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
Multiple unspecified vulnerabilities in Google Chrome before 53.0.2785.143 allow remote attackers to cause a denial of service or possibly have other impact via unknown vectors.
CVE-2016-9840
- EPSS 13%
- Veröffentlicht 23.05.2017 04:29:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
inftrees.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.
CVE-2016-9841
- EPSS 20.28%
- Veröffentlicht 23.05.2017 04:29:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
inffast.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.
CVE-2016-9842
- EPSS 12.13%
- Veröffentlicht 23.05.2017 04:29:01
- Zuletzt bearbeitet 04.12.2025 17:15:51
The inflateMark function in inflate.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving left shifts of negative integers.
CVE-2016-9843
- EPSS 15.07%
- Veröffentlicht 23.05.2017 04:29:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
The crc32_big function in crc32.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving big-endian CRC calculation.
CVE-2017-6891
- EPSS 1.18%
- Veröffentlicht 22.05.2017 19:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
Two errors in the "asn1_find_node()" function (lib/parser_aux.c) within GnuTLS libtasn1 version 4.10 can be exploited to cause a stacked-based buffer overflow by tricking a user into processing a specially crafted assignments file via the e.g. asn1Co...
CVE-2017-9141
- EPSS 1.4%
- Veröffentlicht 22.05.2017 14:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In ImageMagick 7.0.5-7 Q16, a crafted file could trigger an assertion failure in the ResetImageProfileIterator function in MagickCore/profile.c because of missing checks in the ReadDDSImage function in coders/dds.c.
CVE-2017-9142
- EPSS 1.4%
- Veröffentlicht 22.05.2017 14:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In ImageMagick 7.0.5-7 Q16, a crafted file could trigger an assertion failure in the WriteBlob function in MagickCore/blob.c because of missing checks in the ReadOneJNGImage function in coders/png.c.