CVE-2018-9518
- EPSS 0.07%
- Veröffentlicht 07.12.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 04:15:37
In nfc_llcp_build_sdreq_tlv of llcp_commands.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with System execution privileges needed. User interaction is not needed for exploi...
CVE-2018-5810
- EPSS 0.5%
- Veröffentlicht 07.12.2018 22:29:01
- Zuletzt bearbeitet 21.11.2024 04:09:27
An error within the "rollei_load_raw()" function (internal/dcraw_common.cpp) in LibRaw versions prior to 0.18.9 can be exploited to cause a heap-based buffer overflow and subsequently cause a crash.
CVE-2018-5811
- EPSS 0.51%
- Veröffentlicht 07.12.2018 22:29:01
- Zuletzt bearbeitet 21.11.2024 04:09:27
An error within the "nikon_coolscan_load_raw()" function (internal/dcraw_common.cpp) in LibRaw versions prior to 0.18.9 can be exploited to cause an out-of-bounds read memory access and subsequently cause a crash.
CVE-2018-5812
- EPSS 0.51%
- Veröffentlicht 07.12.2018 22:29:01
- Zuletzt bearbeitet 21.11.2024 04:09:27
An error within the "nikon_coolscan_load_raw()" function (internal/dcraw_common.cpp) in LibRaw versions prior to 0.18.9 can be exploited to trigger a NULL pointer dereference.
CVE-2018-5813
- EPSS 0.46%
- Veröffentlicht 07.12.2018 22:29:01
- Zuletzt bearbeitet 21.11.2024 04:09:27
An error within the "parse_minolta()" function (dcraw/dcraw.c) in LibRaw versions prior to 0.18.11 can be exploited to trigger an infinite loop via a specially crafted file.
CVE-2018-5815
- EPSS 0.56%
- Veröffentlicht 07.12.2018 22:29:01
- Zuletzt bearbeitet 21.11.2024 04:09:27
An integer overflow error within the "parse_qt()" function (internal/dcraw_common.cpp) in LibRaw versions prior to 0.18.12 can be exploited to trigger an infinite loop via a specially crafted Apple QuickTime file.
CVE-2018-5816
- EPSS 0.62%
- Veröffentlicht 07.12.2018 22:29:01
- Zuletzt bearbeitet 21.11.2024 04:09:28
An integer overflow error within the "identify()" function (internal/dcraw_common.cpp) in LibRaw versions prior to 0.18.12 can be exploited to trigger a division by zero via specially crafted NOKIARAW file (Note: This vulnerability is caused due to a...
CVE-2017-16909
- EPSS 0.57%
- Veröffentlicht 07.12.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 03:17:13
An error related to the "LibRaw::panasonic_load_raw()" function (dcraw_common.cpp) in LibRaw versions prior to 0.18.6 can be exploited to cause a heap-based buffer overflow and subsequently cause a crash via a specially crafted TIFF image.
CVE-2017-16910
- EPSS 0.51%
- Veröffentlicht 07.12.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 03:17:13
An error within the "LibRaw::xtrans_interpolate()" function (internal/dcraw_common.cpp) in LibRaw versions prior to 0.18.6 can be exploited to cause an invalid read memory access and subsequently a Denial of Service condition.
CVE-2018-5800
- EPSS 1.48%
- Veröffentlicht 07.12.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 04:09:25
An off-by-one error within the "LibRaw::kodak_ycbcr_load_raw()" function (internal/dcraw_common.cpp) in LibRaw versions prior to 0.18.7 can be exploited to cause a heap-based buffer overflow and subsequently cause a crash.