CVE-2017-9210
- EPSS 0.28%
- Veröffentlicht 23.05.2017 04:29:04
- Zuletzt bearbeitet 20.04.2025 01:37:25
libqpdf.a in QPDF 6.0.0 allows remote attackers to cause a denial of service (infinite recursion and stack consumption) via a crafted PDF document, related to unparse functions, aka qpdf-infiniteloop3.
CVE-2016-9840
- EPSS 13%
- Veröffentlicht 23.05.2017 04:29:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
inftrees.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.
CVE-2016-9841
- EPSS 20.28%
- Veröffentlicht 23.05.2017 04:29:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
inffast.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact by leveraging improper pointer arithmetic.
CVE-2016-9842
- EPSS 13.69%
- Veröffentlicht 23.05.2017 04:29:01
- Zuletzt bearbeitet 04.12.2025 17:15:51
The inflateMark function in inflate.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving left shifts of negative integers.
CVE-2016-9843
- EPSS 7.98%
- Veröffentlicht 23.05.2017 04:29:01
- Zuletzt bearbeitet 20.04.2025 01:37:25
The crc32_big function in crc32.c in zlib 1.2.8 might allow context-dependent attackers to have unspecified impact via vectors involving big-endian CRC calculation.
CVE-2017-9117
- EPSS 0.09%
- Veröffentlicht 21.05.2017 19:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In LibTIFF 4.0.6 and possibly other versions, the program processes BMP images without verifying that biWidth and biHeight in the bitmap-information header match the actual input, as demonstrated by a heap-based buffer over-read in bmp2tiff. NOTE: me...
CVE-2017-9058
- EPSS 0.39%
- Veröffentlicht 18.05.2017 06:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
In libytnef in ytnef through 1.9.2, there is a heap-based buffer over-read due to incorrect boundary checking in the SIZECHECK macro in lib/ytnef.c.
CVE-2017-8831
- EPSS 0.09%
- Veröffentlicht 08.05.2017 06:29:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The saa7164_bus_get function in drivers/media/pci/saa7164/saa7164-bus.c in the Linux kernel through 4.11.5 allows local users to cause a denial of service (out-of-bounds array access) or possibly have unspecified other impact by changing a certain se...
CVE-2017-6519
- EPSS 1.13%
- Veröffentlicht 01.05.2017 01:59:00
- Zuletzt bearbeitet 03.12.2025 22:15:49
avahi-daemon in Avahi through 0.6.32 and 0.7 inadvertently responds to IPv6 unicast queries with source addresses that are not on-link, which allows remote attackers to cause a denial of service (traffic amplification) and may cause information leaka...
CVE-2017-7645
- EPSS 20%
- Veröffentlicht 18.04.2017 14:59:00
- Zuletzt bearbeitet 20.04.2025 01:37:25
The NFSv2/NFSv3 server in the nfsd subsystem in the Linux kernel through 4.10.11 allows remote attackers to cause a denial of service (system crash) via a long RPC reply, related to net/sunrpc/svc.c, fs/nfsd/nfs3xdr.c, and fs/nfsd/nfsxdr.c.