CVE-2017-5193
- EPSS 1.88%
- Veröffentlicht 03.03.2017 15:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The nickcmp function in Irssi before 0.8.21 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a message without a nick.
CVE-2017-5194
- EPSS 1.87%
- Veröffentlicht 03.03.2017 15:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
Use-after-free vulnerability in Irssi before 0.8.21 allows remote attackers to cause a denial of service (crash) via an invalid nick message.
CVE-2017-5356
- EPSS 2.76%
- Veröffentlicht 03.03.2017 15:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
Irssi before 0.8.21 allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a string containing a formatting sequence (%[) without a closing bracket (]).
CVE-2016-9830
- EPSS 0.6%
- Veröffentlicht 01.03.2017 20:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The MagickRealloc function in memory.c in Graphicsmagick 1.3.25 allows remote attackers to cause a denial of service (crash) via large dimensions in a jpeg image.
CVE-2017-5974
- EPSS 0.38%
- Veröffentlicht 01.03.2017 15:59:01
- Zuletzt bearbeitet 13.05.2026 00:24:29
Heap-based buffer overflow in the __zzip_get32 function in fetch.c in zziplib 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.58, 0.13.57, 0.13.56 allows remote attackers to cause a denial of service (crash) via a crafted ZIP file.
CVE-2017-5975
- EPSS 0.91%
- Veröffentlicht 01.03.2017 15:59:01
- Zuletzt bearbeitet 13.05.2026 00:24:29
Heap-based buffer overflow in the __zzip_get64 function in fetch.c in zziplib 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.58, 0.13.57, 0.13.56 allows remote attackers to cause a denial of service (crash) via a crafted ZIP file.
CVE-2017-5976
- EPSS 0.91%
- Veröffentlicht 01.03.2017 15:59:01
- Zuletzt bearbeitet 13.05.2026 00:24:29
Heap-based buffer overflow in the zzip_mem_entry_extra_block function in memdisk.c in zziplib 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.58, 0.13.57, 0.13.56 allows remote attackers to cause a denial of service (crash) via a crafted ZIP file.
CVE-2016-9559
- EPSS 1.03%
- Veröffentlicht 01.03.2017 15:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
coders/tiff.c in ImageMagick before 7.0.3.7 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted image.
CVE-2017-5946
- EPSS 5.92%
- Veröffentlicht 27.02.2017 07:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The Zip::File component in the rubyzip gem before 1.2.1 for Ruby has a directory traversal vulnerability. If a site allows uploading of .zip files, an attacker can upload a malicious file that uses "../" pathname substrings to write arbitrary files t...
CVE-2017-5669
- EPSS 0.06%
- Veröffentlicht 24.02.2017 15:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The do_shmat function in ipc/shm.c in the Linux kernel through 4.9.12 does not restrict the address calculated by a certain rounding operation, which allows local users to map page zero, and consequently bypass a protection mechanism that exists for ...