Canonical

Ubuntu Linux

4106 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.09%
  • Veröffentlicht 20.07.2017 04:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

Buffer overflow in the mp_override_legacy_irq() function in arch/x86/kernel/acpi/boot.c in the Linux kernel through 3.2 allows local users to gain privileges via a crafted ACPI table.

  • EPSS 0.98%
  • Veröffentlicht 17.07.2017 13:18:21
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In ImageMagick before 7.0.5-10, a crafted RLE image can trigger a crash because of incorrect EOF handling in coders/rle.c. NOTE: this vulnerability exists because of an incomplete fix for CVE-2017-9144.

  • EPSS 1.61%
  • Veröffentlicht 17.07.2017 13:18:17
  • Zuletzt bearbeitet 20.04.2025 01:37:25

JasPer 2.0.12 is vulnerable to a NULL pointer exception in the function jp2_encode which failed to check to see if the image contained at least one component resulting in a denial-of-service.

  • EPSS 0.4%
  • Veröffentlicht 08.07.2017 17:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In Netwide Assembler (NASM) 2.14rc0, preproc.c allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted file.

Exploit
  • EPSS 0.62%
  • Veröffentlicht 29.06.2017 23:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In Netwide Assembler (NASM) 2.14rc0, there are multiple heap use after free vulnerabilities in the tool nasm. The related heap is allocated in the token() function and freed in the detoken() function (called by pp_getline()) - it is used again at mul...

  • EPSS 0.11%
  • Veröffentlicht 28.06.2017 06:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

The snd_msndmidi_input_read function in sound/isa/msnd/msnd_midi.c in the Linux kernel through 4.11.7 allows local users to cause a denial of service (over-boundary access) or possibly have unspecified other impact by changing the value of a message ...

  • EPSS 0.74%
  • Veröffentlicht 27.06.2017 20:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

res_query in libresolv in glibc before 2.25 allows remote attackers to cause a denial of service (NULL pointer dereference and process crash).

Exploit
  • EPSS 0.63%
  • Veröffentlicht 26.06.2017 12:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In LibTIFF 4.0.8, there is a heap-based buffer overflow in the t2p_write_pdf function in tools/tiff2pdf.c. This heap overflow could lead to different damages. For example, a crafted TIFF document can lead to an out-of-bounds read in TIFFCleanup, an i...

Exploit
  • EPSS 6.04%
  • Veröffentlicht 26.06.2017 12:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In LibTIFF 4.0.8, there is a memory leak in tif_jbig.c. A crafted TIFF document can lead to a memory leak resulting in a remote denial of service attack.

  • EPSS 0.47%
  • Veröffentlicht 22.06.2017 15:29:00
  • Zuletzt bearbeitet 20.04.2025 01:37:25

In LibTIFF 4.0.7, the TIFFReadDirEntryLong8Array function in libtiff/tif_dirread.c mishandles a malloc operation, which allows attackers to cause a denial of service (memory leak within the function _TIFFmalloc in tif_unix.c) via a crafted file.