|
252921
|
7.8 |
HIGH
Local
|
podofo_project
|
podofo
|
Heap-based buffer overflow in the PoDoFo::PdfTokenizer::GetNextToken function in PdfTokenizer.cpp in PoDoFo 0.9.4 allows remote attackers to have unspecified impact via a crafted file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-5886
|
2024-11-21 12:28 |
2017-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252922
|
5.5 |
MEDIUM
Local
|
podofo_project
|
podofo
|
The PoDoFo::PdfParser::ReadXRefSubsection function in PdfParser.cpp in PoDoFo 0.9.4 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-5855
|
2024-11-21 12:28 |
2017-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252923
|
5.5 |
MEDIUM
Local
|
podofo_project
|
podofo
|
base/PdfOutputStream.cpp in PoDoFo 0.9.4 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted file.
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-5854
|
2024-11-21 12:28 |
2017-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252924
|
7.8 |
HIGH
Local
|
podofo_project
|
podofo
|
Integer overflow in base/PdfParser.cpp in PoDoFo 0.9.4 allows remote attackers to have unspecified impact via a crafted file.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-5853
|
2024-11-21 12:28 |
2017-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252925
|
5.5 |
MEDIUM
Local
|
podofo_project
|
podofo
|
The PoDoFo::PdfPage::GetInheritedKeyFromObject function in base/PdfVariant.cpp in PoDoFo 0.9.4 allows remote attackers to cause a denial of service (infinite loop) via a crafted file.
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2017-5852
|
2024-11-21 12:28 |
2017-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252926
|
5.5 |
MEDIUM
Local
|
mp3splt_project
|
mp3splt
|
The free_options function in options_manager.c in mp3splt 2.6.2 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted file. NOTE: this typically has…
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-5851
|
2024-11-21 12:28 |
2017-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252927
|
5.5 |
MEDIUM
Local
|
mp3splt_project
|
mp3splt
|
The free_options function in options_manager.c in mp3splt 2.6.2 allows remote attackers to cause a denial of service (invalid free and crash) via a crafted file.
|
CWE-416
Use After Free
|
CVE-2017-5666
|
2024-11-21 12:28 |
2017-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252928
|
5.5 |
MEDIUM
Local
|
libmp3splt_project
|
libmp3splt
|
The splt_cue_export_to_file function in cue.c in libmp3splt 0.9.2 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted file.
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-5665
|
2024-11-21 12:28 |
2017-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252929
|
7.3 |
HIGH
Local
|
intel
|
system_studio parallel_studio_xe data_analytics_acceleration_library integrated_performance_primitives vtune_amplifier math_kernel_library trace_analyzer_and_collector advisor
|
Intel PSET Application Install wrapper of Intel Parallel Studio XE, Intel System Studio, Intel VTune Amplifier, Intel Inspector, Intel Advisor, Intel MPI Library, Intel Trace Analyzer and Collector, …
|
NVD-CWE-noinfo
|
CVE-2017-5682
|
2024-11-21 12:28 |
2017-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252930
|
7.5 |
HIGH
Network
|
kodi
|
kodi
|
Directory traversal vulnerability in the Chorus2 2.4.2 add-on for Kodi allows remote attackers to read arbitrary files via a %2E%2E%252e (encoded dot dot slash) in the image path, as demonstrated by …
|
CWE-22
Path Traversal
|
CVE-2017-5982
|
2024-11-21 12:28 |
2017-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|