CVE-2018-8788
- EPSS 7.23%
- Veröffentlicht 29.11.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 04:14:18
FreeRDP prior to version 2.0.0-rc4 contains an Out-Of-Bounds Write of up to 4 bytes in function nsc_rle_decode() that results in a memory corruption and possibly even a remote code execution.
CVE-2018-14629
- EPSS 13.62%
- Veröffentlicht 28.11.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 03:49:27
A denial of service vulnerability was discovered in Samba's LDAP server before versions 4.7.12, 4.8.7, and 4.9.3. A CNAME loop could lead to infinite recursion in the server. An unprivileged local attacker could create such an entry, leading to denia...
CVE-2018-16841
- EPSS 9.42%
- Veröffentlicht 28.11.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 03:53:25
Samba from version 4.3.0 and before versions 4.7.12, 4.8.7 and 4.9.3 are vulnerable to a denial of service. When configured to accept smart-card authentication, Samba's KDC will call talloc_free() twice on the same memory if the principal in a validl...
CVE-2018-16851
- EPSS 13.56%
- Veröffentlicht 28.11.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 03:53:26
Samba from version 4.0.0 and before versions 4.7.12, 4.8.7, 4.9.3 is vulnerable to a denial of service. During the processing of an LDAP search before Samba's AD DC returns the LDAP entries to the client, the entries are cached in a single memory obj...
CVE-2018-16862
- EPSS 0.03%
- Veröffentlicht 26.11.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 03:53:28
A security flaw was found in the Linux kernel in a way that the cleancache subsystem clears an inode after the final file truncation (removal). The new file created with the same inode may contain leftover pages from cleancache and the old file data ...
CVE-2018-19541
- EPSS 1.18%
- Veröffentlicht 26.11.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 03:58:07
An issue was discovered in JasPer 1.900.8, 1.900.9, 1.900.10, 1.900.11, 1.900.12, 1.900.13, 1.900.14, 1.900.15, 1.900.16, 1.900.17, 1.900.18, 1.900.19, 1.900.20, 1.900.21, 1.900.22, 1.900.23, 1.900.24, 1.900.25, 1.900.26, 1.900.27, 1.900.28, 1.900.29...
CVE-2018-19542
- EPSS 0.97%
- Veröffentlicht 26.11.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 03:58:07
An issue was discovered in JasPer 2.0.14. There is a NULL pointer dereference in the function jp2_decode in libjasper/jp2/jp2_dec.c, leading to a denial of service.
CVE-2018-19543
- EPSS 0.34%
- Veröffentlicht 26.11.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 03:58:07
An issue was discovered in JasPer 2.0.14. There is a heap-based buffer over-read of size 8 in the function jp2_decode in libjasper/jp2/jp2_dec.c.
CVE-2018-19535
- EPSS 0.36%
- Veröffentlicht 26.11.2018 02:29:00
- Zuletzt bearbeitet 21.11.2024 03:58:06
In Exiv2 0.26 and previous versions, PngChunk::readRawProfile in pngchunk_int.cpp may cause a denial of service (application crash due to a heap-based buffer over-read) via a crafted PNG file.
CVE-2018-19518
- EPSS 93.96%
- Veröffentlicht 25.11.2018 10:29:00
- Zuletzt bearbeitet 21.11.2024 03:58:04
University of Washington IMAP Toolkit 2007f on UNIX, as used in imap_open() in PHP and other products, launches an rsh command (by means of the imap_rimap function in c-client/imap4r1.c and the tcp_aopen function in osdep/unix/tcp_unix.c) without pre...