CVE-2017-16612
- EPSS 3.56%
- Veröffentlicht 01.12.2017 17:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
libXcursor before 1.1.15 has various integer overflows that could lead to heap buffer overflows when processing malicious cursors, e.g., with programs like GIMP. It is also possible that an attack vector exists against the related code in cursor/xcur...
CVE-2017-17087
- EPSS 0.16%
- Veröffentlicht 01.12.2017 08:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
fileio.c in Vim prior to 8.0.1263 sets the group ownership of a .swp file to the editor's primary group (which may be different from the group ownership of the original file), which allows local users to obtain sensitive information by leveraging an ...
CVE-2017-14746
- EPSS 31.25%
- Veröffentlicht 27.11.2017 22:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
Use-after-free vulnerability in Samba 4.x before 4.7.3 allows remote attackers to execute arbitrary code via a crafted SMB1 request.
CVE-2017-15275
- EPSS 43.27%
- Veröffentlicht 27.11.2017 22:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
Samba before 4.7.3 might allow remote attackers to obtain sensitive information by leveraging failure of the server to clear allocated heap memory.
CVE-2017-14176
- EPSS 1.76%
- Veröffentlicht 27.11.2017 10:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
Bazaar through 2.7.0, when Subprocess SSH is used, allows remote attackers to execute arbitrary commands via a bzr+ssh URL with an initial dash character in the hostname, a related issue to CVE-2017-9800, CVE-2017-12836, CVE-2017-12976, CVE-2017-1622...
CVE-2017-16544
- EPSS 3.31%
- Veröffentlicht 20.11.2017 15:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
In the add_match function in libbb/lineedit.c in BusyBox through 1.27.2, the tab autocomplete feature of the shell, used to get a list of filenames in a directory, does not sanitize filenames and results in executing any escape sequence in the termin...
- EPSS 2.07%
- Veröffentlicht 17.11.2017 20:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
hw/input/ps2.c in Qemu does not validate 'rptr' and 'count' values during guest migration, leading to out-of-bounds access.
CVE-2017-15102
- EPSS 0.09%
- Veröffentlicht 15.11.2017 21:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The tower_probe function in drivers/usb/misc/legousbtower.c in the Linux kernel before 4.8.1 allows local users (who are physically proximate for inserting a crafted USB device) to gain privileges by leveraging a write-what-where condition that occur...
CVE-2017-15115
- EPSS 0.05%
- Veröffentlicht 15.11.2017 21:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The sctp_do_peeloff function in net/sctp/socket.c in the Linux kernel before 4.14 does not check whether the intended netns is used in a peel-off action, which allows local users to cause a denial of service (use-after-free and system crash) or possi...
CVE-2017-16642
- EPSS 8.26%
- Veröffentlicht 07.11.2017 21:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
In PHP before 5.6.32, 7.x before 7.0.25, and 7.1.x before 7.1.11, an error in the date extension's timelib_meridian handling of 'front of' and 'back of' directives could be used by attackers able to supply date strings to leak information from the in...