CVE-2018-1068
- EPSS 0.04%
- Veröffentlicht 16.03.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 03:59:06
A flaw was found in the Linux 4.x kernel's implementation of 32-bit syscall interface for bridging. This allowed a privileged user to arbitrarily write to a limited range of kernel memory.
CVE-2017-18233
- EPSS 0.55%
- Veröffentlicht 15.03.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:38
An issue was discovered in Exempi before 2.4.4. Integer overflow in the Chunk class in XMPFiles/source/FormatSupport/RIFF.cpp allows remote attackers to cause a denial of service (infinite loop) via crafted XMP data in a .avi file.
CVE-2017-18234
- EPSS 0.62%
- Veröffentlicht 15.03.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:38
An issue was discovered in Exempi before 2.4.3. It allows remote attackers to cause a denial of service (invalid memcpy with resultant use-after-free) or possibly have unspecified other impact via a .pdf file containing JPEG data, related to XMPFiles...
CVE-2017-18236
- EPSS 0.87%
- Veröffentlicht 15.03.2018 19:29:00
- Zuletzt bearbeitet 21.11.2024 03:19:38
An issue was discovered in Exempi before 2.4.4. The ASF_Support::ReadHeaderObject function in XMPFiles/source/FormatSupport/ASF_Support.cpp allows remote attackers to cause a denial of service (infinite loop) via a crafted .asf file.
CVE-2018-1000120
- EPSS 1.89%
- Veröffentlicht 14.03.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:39:43
A buffer overflow exists in curl 7.12.3 to and including curl 7.58.0 in the FTP URL handling that allows an attacker to cause a denial of service or worse.
CVE-2018-1000121
- EPSS 3.84%
- Veröffentlicht 14.03.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:39:43
A NULL pointer dereference exists in curl 7.21.0 to and including curl 7.58.0 in the LDAP code that allows an attacker to cause a denial of service
CVE-2018-1000122
- EPSS 2.38%
- Veröffentlicht 14.03.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 03:39:43
A buffer over-read exists in curl 7.20.0 to and including curl 7.58.0 in the RTSP+RTP handling code that allows an attacker to cause a denial of service or information leakage
CVE-2018-1000127
- EPSS 1%
- Veröffentlicht 13.03.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 03:39:44
memcached version prior to 1.4.37 contains an Integer Overflow vulnerability in items.c:item_free() that can result in data corruption and deadlocks due to items existing in hash table being reused from free list. This attack appear to be exploitable...
CVE-2018-1050
- EPSS 25.96%
- Veröffentlicht 13.03.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 03:59:04
All versions of Samba from 4.0.0 onwards are vulnerable to a denial of service attack when the RPC spoolss service is configured to be run as an external daemon. Missing input sanitization checks on some of the input parameters to spoolss RPC calls c...
CVE-2018-1057
- EPSS 6.72%
- Veröffentlicht 13.03.2018 16:29:00
- Zuletzt bearbeitet 21.11.2024 03:59:05
On a Samba 4 AD DC the LDAP server in all versions of Samba from 4.0.0 onwards incorrectly validates permissions to modify passwords over LDAP allowing authenticated users to change any other users' passwords, including administrative users and privi...