CVE-2018-1000135
- EPSS 1.12%
- Veröffentlicht 20.03.2018 13:29:00
- Zuletzt bearbeitet 21.11.2024 03:39:45
GNOME NetworkManager version 1.10.2 and earlier contains a Information Exposure (CWE-200) vulnerability in DNS resolver that can result in Private DNS queries leaked to local network's DNS servers, while on VPN. This vulnerability appears to have bee...
CVE-2018-8804
- EPSS 0.37%
- Veröffentlicht 20.03.2018 05:29:00
- Zuletzt bearbeitet 21.11.2024 04:14:21
WriteEPTImage in coders/ept.c in ImageMagick 7.0.7-25 Q16 allows remote attackers to cause a denial of service (MagickCore/memory.c double free and application crash) or possibly have unspecified other impact via a crafted file.
CVE-2018-1068
- EPSS 0.03%
- Veröffentlicht 16.03.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 03:59:06
A flaw was found in the Linux 4.x kernel's implementation of 32-bit syscall interface for bridging. This allowed a privileged user to arbitrarily write to a limited range of kernel memory.
CVE-2017-18233
- EPSS 0.55%
- Veröffentlicht 15.03.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:38
An issue was discovered in Exempi before 2.4.4. Integer overflow in the Chunk class in XMPFiles/source/FormatSupport/RIFF.cpp allows remote attackers to cause a denial of service (infinite loop) via crafted XMP data in a .avi file.
CVE-2017-18234
- EPSS 0.62%
- Veröffentlicht 15.03.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:38
An issue was discovered in Exempi before 2.4.3. It allows remote attackers to cause a denial of service (invalid memcpy with resultant use-after-free) or possibly have unspecified other impact via a .pdf file containing JPEG data, related to XMPFiles...
CVE-2017-18236
- EPSS 0.87%
- Veröffentlicht 15.03.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:38
An issue was discovered in Exempi before 2.4.4. The ASF_Support::ReadHeaderObject function in XMPFiles/source/FormatSupport/ASF_Support.cpp allows remote attackers to cause a denial of service (infinite loop) via a crafted .asf file.
CVE-2018-1000120
- EPSS 1.3%
- Veröffentlicht 14.03.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:39:43
A buffer overflow exists in curl 7.12.3 to and including curl 7.58.0 in the FTP URL handling that allows an attacker to cause a denial of service or worse.
CVE-2018-1000121
- EPSS 2.67%
- Veröffentlicht 14.03.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:39:43
A NULL pointer dereference exists in curl 7.21.0 to and including curl 7.58.0 in the LDAP code that allows an attacker to cause a denial of service
CVE-2018-1000122
- EPSS 1.64%
- Veröffentlicht 14.03.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:39:43
A buffer over-read exists in curl 7.20.0 to and including curl 7.58.0 in the RTSP+RTP handling code that allows an attacker to cause a denial of service or information leakage
CVE-2018-1000127
- EPSS 1%
- Veröffentlicht 13.03.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 03:39:44
memcached version prior to 1.4.37 contains an Integer Overflow vulnerability in items.c:item_free() that can result in data corruption and deadlocks due to items existing in hash table being reused from free list. This attack appear to be exploitable...