CVE-2018-0643
- EPSS 0.32%
- Veröffentlicht 07.09.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 03:38:39
Ubuntu14.04 ORCA (Online Receipt Computer Advantage) 4.8.0 (panda-server) 1:1.4.9+p41-u4jma1 and earlier allows attacker with administrator rights to execute arbitrary OS commands via unspecified vectors.
CVE-2018-16646
- EPSS 0.68%
- Veröffentlicht 06.09.2018 23:29:01
- Zuletzt bearbeitet 21.11.2024 03:53:08
In Poppler 0.68.0, the Parser::getObj() function in Parser.cc may cause infinite recursion via a crafted file. A remote attacker can leverage this for a DoS attack.
CVE-2018-16643
- EPSS 0.34%
- Veröffentlicht 06.09.2018 22:29:01
- Zuletzt bearbeitet 21.11.2024 03:53:07
The functions ReadDCMImage in coders/dcm.c, ReadPWPImage in coders/pwp.c, ReadCALSImage in coders/cals.c, and ReadPICTImage in coders/pict.c in ImageMagick 7.0.8-4 do not check the return value of the fputc function, which allows remote attackers to ...
CVE-2018-16644
- EPSS 0.24%
- Veröffentlicht 06.09.2018 22:29:01
- Zuletzt bearbeitet 21.11.2024 03:53:07
There is a missing check for length in the functions ReadDCMImage of coders/dcm.c and ReadPICTImage of coders/pict.c in ImageMagick 7.0.8-11, which allows remote attackers to cause a denial of service via a crafted image.
CVE-2018-16645
- EPSS 0.56%
- Veröffentlicht 06.09.2018 22:29:01
- Zuletzt bearbeitet 21.11.2024 03:53:07
There is an excessive memory allocation issue in the functions ReadBMPImage of coders/bmp.c and ReadDIBImage of coders/dib.c in ImageMagick 7.0.8-11, which allows remote attackers to cause a denial of service via a crafted image file.
CVE-2018-16640
- EPSS 0.3%
- Veröffentlicht 06.09.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 03:53:07
ImageMagick 7.0.8-5 has a memory leak vulnerability in the function ReadOneJNGImage in coders/png.c.
CVE-2018-16642
- EPSS 0.31%
- Veröffentlicht 06.09.2018 22:29:00
- Zuletzt bearbeitet 21.11.2024 03:53:07
The function InsertRow in coders/cut.c in ImageMagick 7.0.7-37 allows remote attackers to cause a denial of service via a crafted image file due to an out-of-bounds write.
CVE-2018-5391
- EPSS 5.1%
- Veröffentlicht 06.09.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 04:08:43
The Linux kernel, versions 3.9+, is vulnerable to a denial of service attack with low rates of specially modified packets targeting IP fragment re-assembly. An attacker may cause a denial of service condition by sending specially crafted IP fragments...
CVE-2018-16585
- EPSS 0.5%
- Veröffentlicht 06.09.2018 14:29:00
- Zuletzt bearbeitet 21.11.2024 03:52:59
An issue was discovered in Artifex Ghostscript before 9.24. The .setdistillerkeys PostScript command is accepted even though it is not intended for use during document processing (e.g., after the startup phase). This leads to memory corruption, allow...
- EPSS 0.37%
- Veröffentlicht 05.09.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 03:49:26
curl before version 7.61.1 is vulnerable to a buffer overrun in the NTLM authentication code. The internal function Curl_ntlm_core_mk_nt_hash multiplies the length of the password by two (SUM) to figure out how large temporary storage area to allocat...