CVE-2017-16546
- EPSS 0.59%
- Veröffentlicht 05.11.2017 22:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The ReadWPGImage function in coders/wpg.c in ImageMagick 7.0.7-9 does not properly validate the colormap index in a WPG palette, which allows remote attackers to cause a denial of service (use of uninitialized data or invalid memory allocation) or po...
CVE-2017-16532
- EPSS 0.09%
- Veröffentlicht 04.11.2017 01:29:37
- Zuletzt bearbeitet 20.04.2025 01:37:25
The get_endpoints function in drivers/usb/misc/usbtest.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via a crafted USB devic...
CVE-2017-16533
- EPSS 0.11%
- Veröffentlicht 04.11.2017 01:29:37
- Zuletzt bearbeitet 20.04.2025 01:37:25
The usbhid_parse function in drivers/hid/usbhid/hid-core.c in the Linux kernel before 4.13.8 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device.
CVE-2017-16525
- EPSS 0.1%
- Veröffentlicht 04.11.2017 01:29:36
- Zuletzt bearbeitet 20.04.2025 01:37:25
The usb_serial_console_disconnect function in drivers/usb/serial/console.c in the Linux kernel before 4.13.8 allows local users to cause a denial of service (use-after-free and system crash) or possibly have unspecified other impact via a crafted USB...
CVE-2017-16526
- EPSS 0.11%
- Veröffentlicht 04.11.2017 01:29:36
- Zuletzt bearbeitet 20.04.2025 01:37:25
drivers/uwb/uwbd.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (general protection fault and system crash) or possibly have unspecified other impact via a crafted USB device.
CVE-2017-16527
- EPSS 0.12%
- Veröffentlicht 04.11.2017 01:29:36
- Zuletzt bearbeitet 20.04.2025 01:37:25
sound/usb/mixer.c in the Linux kernel before 4.13.8 allows local users to cause a denial of service (snd_usb_mixer_interrupt use-after-free and system crash) or possibly have unspecified other impact via a crafted USB device.
CVE-2017-16528
- EPSS 0.11%
- Veröffentlicht 04.11.2017 01:29:36
- Zuletzt bearbeitet 20.04.2025 01:37:25
sound/core/seq_device.c in the Linux kernel before 4.13.4 allows local users to cause a denial of service (snd_rawmidi_dev_seq_free use-after-free and system crash) or possibly have unspecified other impact via a crafted USB device.
CVE-2017-16529
- EPSS 0.12%
- Veröffentlicht 04.11.2017 01:29:36
- Zuletzt bearbeitet 20.04.2025 01:37:25
The snd_usb_create_streams function in sound/usb/card.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (out-of-bounds read and system crash) or possibly have unspecified other impact via a crafted USB device.
CVE-2017-15908
- EPSS 0.33%
- Veröffentlicht 26.10.2017 14:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In systemd 223 through 235, a remote DNS server can respond with a custom crafted DNS NSEC resource record to trigger an infinite loop in the dns_packet_read_type_window() function of the 'systemd-resolved' service and cause a DoS of the affected ser...
CVE-2017-15873
- EPSS 0.14%
- Veröffentlicht 24.10.2017 20:29:00
- Zuletzt bearbeitet 09.06.2025 16:15:26
The get_next_block function in archival/libarchive/decompress_bunzip2.c in BusyBox 1.27.2 has an Integer Overflow that may lead to a write access violation.