CVE-2018-7456
- EPSS 0.66%
- Veröffentlicht 24.02.2018 06:29:00
- Zuletzt bearbeitet 21.11.2024 04:12:10
A NULL Pointer Dereference occurs in the function TIFFPrintDirectory in tif_print.c in LibTIFF 3.9.3, 3.9.4, 3.9.5, 3.9.6, 3.9.7, 4.0.0alpha4, 4.0.0alpha5, 4.0.0alpha6, 4.0.0beta7, 4.0.0, 4.0.1, 4.0.2, 4.0.3, 4.0.4, 4.0.4beta, 4.0.5, 4.0.6, 4.0.7, 4....
CVE-2018-1305
- EPSS 19.27%
- Veröffentlicht 23.02.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 03:59:35
Security constraints defined by annotations of Servlets in Apache Tomcat 9.0.0.M1 to 9.0.4, 8.5.0 to 8.5.27, 8.0.0.RC1 to 8.0.49 and 7.0.0 to 7.0.84 were only applied once a Servlet had been loaded. Because security constraints defined in this way ap...
CVE-2018-7443
- EPSS 0.44%
- Veröffentlicht 23.02.2018 22:29:01
- Zuletzt bearbeitet 21.11.2024 04:12:08
The ReadTIFFImage function in coders/tiff.c in ImageMagick 7.0.7-23 Q16 does not properly validate the amount of image data in a file, which allows remote attackers to cause a denial of service (memory allocation failure in the AcquireMagickMemory fu...
CVE-2018-6764
- EPSS 0.04%
- Veröffentlicht 23.02.2018 17:29:00
- Zuletzt bearbeitet 21.11.2024 04:11:08
util/virlog.c in libvirt does not properly determine the hostname on LXC container startup, which allows local guest OS users to bypass an intended container protection mechanism and execute arbitrary commands via a crafted NSS module.
CVE-2018-7253
- EPSS 0.88%
- Veröffentlicht 19.02.2018 23:29:00
- Zuletzt bearbeitet 21.11.2024 04:11:53
The ParseDsdiffHeaderConfig function of the cli/dsdiff.c file of WavPack 5.1.0 allows a remote attacker to cause a denial-of-service (heap-based buffer over-read) or possibly overwrite the heap via a maliciously crafted DSDIFF file.
CVE-2018-7225
- EPSS 4.26%
- Veröffentlicht 19.02.2018 15:29:00
- Zuletzt bearbeitet 21.11.2024 04:11:49
An issue was discovered in LibVNCServer through 0.9.11. rfbProcessClientNormalMessage() in rfbserver.c does not sanitize msg.cct.length, leading to access to uninitialized and potentially sensitive data or possibly unspecified other impact (e.g., an ...
CVE-2018-5378
- EPSS 9.62%
- Veröffentlicht 19.02.2018 13:29:00
- Zuletzt bearbeitet 21.11.2024 04:08:41
The Quagga BGP daemon (bgpd) prior to version 1.2.3 does not properly bounds check the data sent with a NOTIFY to a peer, if an attribute length is invalid. Arbitrary data from the bgpd process may be sent over the network to a peer and/or bgpd may c...
CVE-2018-5379
- EPSS 5.5%
- Veröffentlicht 19.02.2018 13:29:00
- Zuletzt bearbeitet 21.11.2024 04:08:41
The Quagga BGP daemon (bgpd) prior to version 1.2.3 can double-free memory when processing certain forms of UPDATE message, containing cluster-list and/or unknown attributes. A successful attack could cause a denial of service or potentially allow an...
CVE-2018-5380
- EPSS 0.86%
- Veröffentlicht 19.02.2018 13:29:00
- Zuletzt bearbeitet 21.11.2024 04:08:42
The Quagga BGP daemon (bgpd) prior to version 1.2.3 can overrun internal BGP code-to-string conversion tables used for debug by 1 pointer value, based on input.
CVE-2018-5381
- EPSS 4.35%
- Veröffentlicht 19.02.2018 13:29:00
- Zuletzt bearbeitet 21.11.2024 04:08:42
The Quagga BGP daemon (bgpd) prior to version 1.2.3 has a bug in its parsing of "Capabilities" in BGP OPEN messages, in the bgp_packet.c:bgp_capability_msg_parse function. The parser can enter an infinite loop on invalid capabilities if a Multi-Proto...