|
249471
|
7.8 |
HIGH
Local
|
google
|
android
|
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for p2p_noa_info in wma_send_bcn_buf_ll() which is received f…
|
CWE-119 CWE-20
Incorrect Access of Indexable Resource ('Range Error') Improper Input Validation
|
CVE-2017-18064
|
2024-11-21 12:19 |
2018-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249472
|
7.8 |
HIGH
Local
|
google
|
android
|
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for nlo_event in wma_nlo_match_evt_handler(), which is receiv…
|
CWE-119 CWE-20
Incorrect Access of Indexable Resource ('Range Error') Improper Input Validation
|
CVE-2017-18063
|
2024-11-21 12:19 |
2018-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249473
|
7.8 |
HIGH
Local
|
google
|
android
|
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improper input validation for vdev_id in wma_unified_bcntx_status_event_handler() which…
|
CWE-20 CWE-125
Improper Input Validation Out-of-bounds Read
|
CVE-2017-18056
|
2024-11-21 12:19 |
2018-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249474
|
5.5 |
MEDIUM
Local
|
exempi_project debian
|
exempi debian_linux
|
An issue was discovered in Exempi before 2.4.4. The TradQT_Manager::ParseCachedBoxes function in XMPFiles/source/FormatSupport/QuickTime_Support.cpp allows remote attackers to cause a denial of servi…
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2017-18238
|
2024-11-21 12:19 |
2018-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249475
|
5.5 |
MEDIUM
Local
|
exempi_project
|
exempi
|
An issue was discovered in Exempi before 2.4.3. The PostScript_Support::ConvertToDate function in XMPFiles/source/FormatSupport/PostScript_Support.cpp allows remote attackers to cause a denial of ser…
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-18237
|
2024-11-21 12:19 |
2018-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249476
|
5.5 |
MEDIUM
Local
|
exempi_project debian canonical
|
exempi debian_linux ubuntu_linux
|
An issue was discovered in Exempi before 2.4.4. The ASF_Support::ReadHeaderObject function in XMPFiles/source/FormatSupport/ASF_Support.cpp allows remote attackers to cause a denial of service (infin…
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2017-18236
|
2024-11-21 12:19 |
2018-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249477
|
5.5 |
MEDIUM
Local
|
exempi_project
|
exempi
|
An issue was discovered in Exempi before 2.4.3. The VPXChunk class in XMPFiles/source/FormatSupport/WEBP_Support.cpp does not ensure nonzero widths and heights, which allows remote attackers to cause…
|
CWE-20
Improper Input Validation
|
CVE-2017-18235
|
2024-11-21 12:19 |
2018-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249478
|
7.8 |
HIGH
Local
|
exempi_project debian canonical
|
exempi debian_linux ubuntu_linux
|
An issue was discovered in Exempi before 2.4.3. It allows remote attackers to cause a denial of service (invalid memcpy with resultant use-after-free) or possibly have unspecified other impact via a …
|
CWE-416
Use After Free
|
CVE-2017-18234
|
2024-11-21 12:19 |
2018-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249479
|
5.5 |
MEDIUM
Local
|
exempi_project debian canonical
|
exempi debian_linux ubuntu_linux
|
An issue was discovered in Exempi before 2.4.4. Integer overflow in the Chunk class in XMPFiles/source/FormatSupport/RIFF.cpp allows remote attackers to cause a denial of service (infinite loop) via …
|
CWE-190 CWE-835
Integer Overflow or Wraparound Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2017-18233
|
2024-11-21 12:19 |
2018-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249480
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The Serial Attached SCSI (SAS) implementation in the Linux kernel through 4.15.9 mishandles a mutex within libsas, which allows local users to cause a denial of service (deadlock) by triggering certa…
|
NVD-CWE-noinfo
|
CVE-2017-18232
|
2024-11-21 12:19 |
2018-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|