|
250201
|
6.5 |
MEDIUM
Network
|
hdfgroup
|
hdf5
|
In HDF5 1.10.1, there is an out of bounds read vulnerability in the function H5Opline_pline_decode in H5Opline.c in libhdf5.a. For example, h5dump would crash when someone opens a crafted hdf5 file.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-17506
|
2024-11-21 12:18 |
2017-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250202
|
6.5 |
MEDIUM
Network
|
hdfgroup
|
hdf5
|
In HDF5 1.10.1, there is a NULL pointer dereference in the function H5O_pline_decode in the H5Opline.c file in libhdf5.a. For example, h5dump would crash when someone opens a crafted hdf5 file.
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-17505
|
2024-11-21 12:18 |
2017-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250203
|
6.5 |
MEDIUM
Network
|
imagemagick canonical debian
|
imagemagick ubuntu_linux debian_linux
|
ImageMagick before 7.0.7-12 has a coders/png.c Magick_png_read_raw_profile heap-based buffer over-read via a crafted file, related to ReadOneMNGImage.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-17504
|
2024-11-21 12:18 |
2017-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250204
|
8.8 |
HIGH
Network
|
graphicsmagick debian
|
graphicsmagick debian_linux
|
ReadGRAYImage in coders/gray.c in GraphicsMagick 1.3.26 has a magick/import.c ImportGrayQuantumType heap-based buffer over-read via a crafted file.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-17503
|
2024-11-21 12:18 |
2017-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250205
|
8.8 |
HIGH
Network
|
graphicsmagick debian
|
graphicsmagick debian_linux
|
ReadCMYKImage in coders/cmyk.c in GraphicsMagick 1.3.26 has a magick/import.c ImportCMYKQuantumType heap-based buffer over-read via a crafted file.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-17502
|
2024-11-21 12:18 |
2017-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250206
|
8.8 |
HIGH
Network
|
graphicsmagick debian
|
graphicsmagick debian_linux
|
WriteOnePNGImage in coders/png.c in GraphicsMagick 1.3.26 has a heap-based buffer over-read via a crafted file.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-17501
|
2024-11-21 12:18 |
2017-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250207
|
8.8 |
HIGH
Network
|
graphicsmagick debian
|
graphicsmagick debian_linux
|
ReadRGBImage in coders/rgb.c in GraphicsMagick 1.3.26 has a magick/import.c ImportRGBQuantumType heap-based buffer over-read via a crafted file.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-17500
|
2024-11-21 12:18 |
2017-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250208
|
9.8 |
CRITICAL
Network
|
imagemagick canonical debian
|
imagemagick ubuntu_linux debian_linux
|
ImageMagick before 6.9.9-24 and 7.x before 7.0.7-12 has a use-after-free in Magick::Image::read in Magick++/lib/Image.cpp.
|
CWE-416
Use After Free
|
CVE-2017-17499
|
2024-11-21 12:18 |
2017-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250209
|
8.8 |
HIGH
Network
|
graphicsmagick
|
graphicsmagick
|
WritePNMImage in coders/pnm.c in GraphicsMagick 1.3.26 allows remote attackers to cause a denial of service (bit_stream.c MagickBitStreamMSBWrite heap-based buffer overflow and application crash) or …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-17498
|
2024-11-21 12:18 |
2017-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250210
|
7.5 |
HIGH
Network
|
htacg
|
tidy
|
In Tidy 5.7.0, the prvTidyTidyMetaCharset function in clean.c allows attackers to cause a denial of service (Segmentation Fault), because the currentNode variable in the "children of the head" proces…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-17497
|
2024-11-21 12:18 |
2017-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|