|
253221
|
7.8 |
HIGH
Local
|
lame_project
|
lame
|
LAME 3.99.5 has a NULL Pointer Dereference in the hip_decode_init function within libmp3lame/mpglib_interface.c via a malformed mpg file, because of an incorrect calloc call.
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-15019
|
2024-11-21 12:13 |
2017-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253222
|
5.5 |
MEDIUM
Local
|
lame_project
|
lame
|
LAME 3.99.5, 3.99.4, 3.99.3, 3.99.2, 3.99.1, 3.99, 3.98.4, 3.98.2 and 3.98 have a heap-based buffer over-read when handling a malformed file in k_34_4 in vbrquantize.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-15018
|
2024-11-21 12:13 |
2017-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253223
|
8.8 |
HIGH
Network
|
imagemagick canonical
|
imagemagick ubuntu_linux
|
ImageMagick 7.0.7-0 Q16 has a NULL pointer dereference vulnerability in ReadOneMNGImage in coders/png.c.
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-15017
|
2024-11-21 12:13 |
2017-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253224
|
8.8 |
HIGH
Network
|
imagemagick canonical
|
imagemagick ubuntu_linux
|
ImageMagick 7.0.7-0 Q16 has a NULL pointer dereference vulnerability in ReadEnhMetaFile in coders/emf.c.
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-15016
|
2024-11-21 12:13 |
2017-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253225
|
8.8 |
HIGH
Network
|
imagemagick canonical
|
imagemagick ubuntu_linux
|
ImageMagick 7.0.7-0 Q16 has a NULL pointer dereference vulnerability in PDFDelegateMessage in coders/pdf.c.
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-15015
|
2024-11-21 12:13 |
2017-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253226
|
7.5 |
HIGH
Network
|
qt
|
qt
|
The named pipes in qtsingleapp in Qt 5.x, as used in qBittorrent and SugarSync, are configured for remote access and allow remote attackers to cause a denial of service (application crash) via an uns…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-15011
|
2024-11-21 12:13 |
2017-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253227
|
7.5 |
HIGH
Network
|
salesforce
|
tough-cookie
|
A ReDoS (regular expression denial of service) flaw was found in the tough-cookie module before 2.3.3 for Node.js. An attacker that is able to make an HTTP request using a specially crafted cookie ma…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2017-15010
|
2024-11-21 12:13 |
2017-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253228
|
6.1 |
MEDIUM
Network
|
paessler
|
prtg_network_monitor
|
PRTG Network Monitor version 17.3.33.2830 is vulnerable to reflected Cross-Site Scripting on error.htm (the error page), via the errormsg parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2017-15009
|
2024-11-21 12:13 |
2017-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253229
|
4.8 |
MEDIUM
Network
|
paessler
|
prtg_network_monitor
|
PRTG Network Monitor version 17.3.33.2830 is vulnerable to stored Cross-Site Scripting on all sensor titles, related to incorrect error handling for a %00 in the SRC attribute of an IMG element.
|
CWE-79
Cross-site Scripting
|
CVE-2017-15008
|
2024-11-21 12:13 |
2017-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
253230
|
6.5 |
MEDIUM
Network
|
graphicsmagick debian
|
graphicsmagick debian_linux
|
GraphicsMagick 1.3.26 allows remote attackers to cause a denial of service (excessive memory allocation) because of an integer underflow in ReadPICTImage in coders/pict.c.
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2017-14997
|
2024-11-21 12:13 |
2017-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|