|
247991
|
7.8 |
HIGH
Local
|
gnome debian
|
gdk-pixbuf debian_linux
|
An exploitable integer overflow vulnerability exists in the tiff_image_parse functionality of Gdk-Pixbuf 2.36.6 when compiled with Clang. A specially crafted tiff file can cause a heap-overflow resul…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-2870
|
2024-11-21 12:24 |
2017-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247992
|
7.8 |
HIGH
Local
|
gnome debian
|
gdk-pixbuf debian_linux
|
An exploitable heap overflow vulnerability exists in the gdk_pixbuf__jpeg_image_load_increment functionality of Gdk-Pixbuf 2.36.6. A specially crafted jpeg file can cause a heap overflow resulting in…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-2862
|
2024-11-21 12:24 |
2017-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247993
|
8.8 |
HIGH
Network
|
lexmark
|
perceptive_document_filters
|
An exploitable code execution vulnerability exists in the image rendering functionality of Lexmark Perceptive Document Filters 11.3.0.2400. A specifically crafted PDF can cause a function call on a c…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-2822
|
2024-11-21 12:24 |
2017-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247994
|
8.8 |
HIGH
Network
|
lexmark
|
perceptive_document_filters
|
An exploitable use-after-free exists in the PDF parsing functionality of Lexmark Perspective Document Filters 11.3.0.2400 and 11.4.0.2452. A crafted PDF document can lead to a use-after-free resultin…
|
CWE-416
Use After Free
|
CVE-2017-2821
|
2024-11-21 12:24 |
2017-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247995
|
7.8 |
HIGH
Local
|
ledger-cli
|
ledger
|
An exploitable use-after-free vulnerability exists in the account parsing component of the Ledger-CLI 3.1.1. A specially crafted ledger file can cause a use-after-free vulnerability resulting in arbi…
|
CWE-416
Use After Free
|
CVE-2017-2808
|
2024-11-21 12:24 |
2017-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247996
|
7.8 |
HIGH
Local
|
ledger-cli
|
ledger
|
An exploitable buffer overflow vulnerability exists in the tag parsing functionality of Ledger-CLI 3.1.1. A specially crafted journal file can cause an integer underflow resulting in code execution. …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-2807
|
2024-11-21 12:24 |
2017-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247997
|
7.8 |
HIGH
Local
|
ni
|
labview
|
An exploitable memory corruption vulnerability exists in the RSRC segment parsing functionality of LabVIEW 2017, LabVIEW 2016, LabVIEW 2015, and LabVIEW 2014. A specially crafted Virtual Instrument (…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-2779
|
2024-11-21 12:24 |
2017-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247998
|
7.5 |
HIGH
Network
|
apache
|
solr
|
When using the Index Replication feature, Apache Solr nodes can pull index files from a master/leader node using an HTTP API which accepts a file name. However, Solr before 5.5.4 and 6.x before 6.4.1…
|
CWE-22
Path Traversal
|
CVE-2017-3163
|
2024-11-21 12:24 |
2017-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247999
|
6.1 |
MEDIUM
Network
|
apache
|
atlas
|
Apache Atlas versions 0.6.0-incubating and 0.7.0-incubating were found vulnerable to cross frame scripting.
|
CWE-79
Cross-site Scripting
|
CVE-2017-3155
|
2024-11-21 12:24 |
2017-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248000
|
7.5 |
HIGH
Network
|
apache
|
atlas
|
Error responses from Apache Atlas versions 0.6.0-incubating and 0.7.0-incubating included stack trace, exposing excessive information.
|
CWE-200
Information Exposure
|
CVE-2017-3154
|
2024-11-21 12:24 |
2017-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|