|
248241
|
7.5 |
HIGH
Network
|
ibm
|
kitura
|
Kitura 2.3.0 and earlier have an unintended read access to unauthorised files and folders that can be exploited by a crafted URL resulting in information disclosure.
|
CWE-200
Information Exposure
|
CVE-2018-1000181
|
2024-11-21 12:39 |
2018-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248242
|
7.5 |
HIGH
Network
|
bouncycastle debian oracle netapp redhat
|
fips_java_api legion-of-the-bouncy-castle-java-crytography-api debian_linux retail_xstore_point_of_service api_gateway weblogic_server enterprise_repository peoplesoft_enterprise…
|
Bouncy Castle BC 1.54 - 1.59, BC-FJA 1.0.0, BC-FJA 1.0.1 and earlier have a flaw in the Low-level interface to RSA key pair generator, specifically RSA Key Pairs generated in low-level API with added…
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2018-1000180
|
2024-11-21 12:39 |
2018-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248243
|
9.8 |
CRITICAL
Network
|
haxx canonical
|
curl ubuntu_linux
|
curl version curl 7.54.1 to and including curl 7.59.0 contains a CWE-122: Heap-based Buffer Overflow vulnerability in denial of service and more that can result in curl might overflow a heap based me…
|
CWE-787
Out-of-bounds Write
|
CVE-2018-1000300
|
2024-11-21 12:39 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248244
|
5.5 |
MEDIUM
Local
|
artifex debian
|
mupdf debian_linux
|
In Artifex MuPDF 1.12.0 and earlier, multiple use of uninitialized value bugs in the PDF parser could allow an attacker to cause a denial of service (crash) or influence program flow via a crafted fi…
|
CWE-20
Improper Input Validation
|
CVE-2018-1000040
|
2024-11-21 12:39 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248245
|
7.8 |
HIGH
Local
|
artifex
|
mupdf
|
In Artifex MuPDF 1.12.0 and earlier, multiple heap use after free bugs in the PDF parser could allow an attacker to execute arbitrary code, read memory, or cause a denial of service via a crafted fil…
|
CWE-416
Use After Free
|
CVE-2018-1000039
|
2024-11-21 12:39 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248246
|
9.1 |
CRITICAL
Network
|
debian canonical haxx redhat oracle
|
debian_linux ubuntu_linux curl enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_manager_ops_center peoplesoft_enterprise_peopletools co…
|
curl version curl 7.20.0 to and including curl 7.59.0 contains a CWE-126: Buffer Over-read vulnerability in denial of service that can result in curl can be tricked into reading data beyond the end o…
|
CWE-125
Out-of-bounds Read
|
CVE-2018-1000301
|
2024-11-21 12:39 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248247
|
5.5 |
MEDIUM
Local
|
debian linux canonical redhat
|
debian_linux linux_kernel ubuntu_linux enterprise_linux_desktop enterprise_linux enterprise_linux_server_aus enterprise_linux_workstation enterprise_linux_server_tus enterpris…
|
The Linux Kernel version 3.18 contains a dangerous feature vulnerability in modify_user_hw_breakpoint() that can result in crash and possibly memory corruption. This attack appear to be exploitable v…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-1000199
|
2024-11-21 12:39 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248248
|
9.8 |
CRITICAL
Network
|
opennetworking
|
openflow
|
OpenFlow version 1.0 onwards contains a Denial of Service and Improper authorization vulnerability in OpenFlow handshake: The DPID (DataPath IDentifier) in the features_reply message are inherently t…
|
CWE-863
Incorrect Authorization
|
CVE-2018-1000155
|
2024-11-21 12:39 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248249
|
7.8 |
HIGH
Local
|
artifex
|
mupdf
|
In Artifex MuPDF 1.12.0 and earlier, a stack buffer overflow in function pdf_lookup_cmap_full in pdf/pdf-cmap.c could allow an attacker to execute arbitrary code via a crafted file.
|
CWE-787
Out-of-bounds Write
|
CVE-2018-1000038
|
2024-11-21 12:39 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248250
|
5.5 |
MEDIUM
Local
|
artifex debian
|
mupdf debian_linux
|
In Artifex MuPDF 1.12.0 and earlier, multiple reachable assertions in the PDF parser allow an attacker to cause a denial of service (assert crash) via a crafted file.
|
CWE-20
Improper Input Validation
|
CVE-2018-1000037
|
2024-11-21 12:39 |
2018-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|