CVE-2018-10528
- EPSS 1.94%
- Veröffentlicht 29.04.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 03:41:30
An issue was discovered in LibRaw 0.18.9. There is a stack-based buffer overflow in the utf2char function in libraw_cxx.cpp.
CVE-2018-10529
- EPSS 0.41%
- Veröffentlicht 29.04.2018 03:29:00
- Zuletzt bearbeitet 21.11.2024 03:41:30
An issue was discovered in LibRaw 0.18.9. There is an out-of-bounds read affecting the X3F property table list implementation in libraw_x3f.cpp and libraw_cxx.cpp.
CVE-2018-1059
- EPSS 0.17%
- Veröffentlicht 24.04.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:59:05
The DPDK vhost-user interface does not check to verify that all the requested guest physical range is mapped and contiguous when performing Guest Physical Addresses to Host Virtual Addresses translations. This may lead to a malicious guest exposing v...
CVE-2018-10323
- EPSS 0.08%
- Veröffentlicht 24.04.2018 06:29:00
- Zuletzt bearbeitet 21.11.2024 03:41:13
The xfs_bmap_extents_to_btree function in fs/xfs/libxfs/xfs_bmap.c in the Linux kernel through 4.16.3 allows local users to cause a denial of service (xfs_bmapi_write NULL pointer dereference) via a crafted xfs image.
CVE-2018-1106
- EPSS 0.03%
- Veröffentlicht 23.04.2018 20:29:14
- Zuletzt bearbeitet 21.11.2024 03:59:11
An authentication bypass flaw has been found in PackageKit before 1.1.10 that allows users without administrator privileges to install signed packages. A local attacker can use this vulnerability to install vulnerable packages to further compromise a...
CVE-2018-8781
- EPSS 0.1%
- Veröffentlicht 23.04.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 04:14:18
The udl_fb_mmap function in drivers/gpu/drm/udl/udl_fb.c at the Linux kernel version 3.4 and up to and including 4.15 has an integer-overflow vulnerability allowing local users with access to the udldrmfb driver to obtain full read and write permissi...
CVE-2017-17833
- EPSS 0.87%
- Veröffentlicht 23.04.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:18:46
OpenSLP releases in the 1.0.2 and 1.1.0 code streams have a heap-related memory corruption issue which may manifest itself as a denial-of-service or a remote code-execution vulnerability.
CVE-2018-2846
- EPSS 0.38%
- Veröffentlicht 19.04.2018 02:29:06
- Zuletzt bearbeitet 21.11.2024 04:04:36
Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Performance Schema). Supported versions that are affected are 5.7.21 and prior. Easily exploitable vulnerability allows high privileged attacker with network access vi...
CVE-2018-2825
- EPSS 1.13%
- Veröffentlicht 19.04.2018 02:29:05
- Zuletzt bearbeitet 06.05.2025 15:15:56
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Libraries). The supported version that is affected is Java SE: 10. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols t...
CVE-2018-2826
- EPSS 3.77%
- Veröffentlicht 19.04.2018 02:29:05
- Zuletzt bearbeitet 06.05.2025 15:15:56
Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Libraries). The supported version that is affected is Java SE: 10. Difficult to exploit vulnerability allows unauthenticated attacker with network access via multiple protocols t...