|
252271
|
6.5 |
MEDIUM
Network
|
xiph.org debian canonical
|
libvorbis debian_linux ubuntu_linux
|
In Xiph.Org libvorbis 1.3.5, an out-of-bounds array read vulnerability exists in the function mapping0_forward() in mapping0.c, which may lead to DoS when operating on a crafted audio file with vorbi…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-14633
|
2024-11-21 12:13 |
2017-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252272
|
9.8 |
CRITICAL
Network
|
xiph.org debian canonical
|
libvorbis debian_linux ubuntu_linux
|
Xiph.Org libvorbis 1.3.5 allows Remote Code Execution upon freeing uninitialized memory in the function vorbis_analysis_headerout() in info.c when vi->channels<=0, a similar issue to Mozilla bug 5501…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-14632
|
2024-11-21 12:13 |
2017-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252273
|
9.8 |
CRITICAL
Network
|
sam2p_project
|
sam2p
|
In sam2p 0.49.3, the pcxLoadRaster function in in_pcx.cpp has an integer signedness error leading to a heap-based buffer overflow.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-14631
|
2024-11-21 12:13 |
2017-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252274
|
9.8 |
CRITICAL
Network
|
sam2p_project
|
sam2p
|
In sam2p 0.49.3, an integer overflow exists in the pcxLoadImage24 function of the file in_pcx.cpp, leading to an invalid write operation.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-14630
|
2024-11-21 12:13 |
2017-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252275
|
7.5 |
HIGH
Network
|
sam2p_project
|
sam2p
|
In sam2p 0.49.3, the in_xpm_reader function in in_xpm.cpp has an integer signedness error, leading to a crash when writing to an out-of-bounds array element.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-14629
|
2024-11-21 12:13 |
2017-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252276
|
9.8 |
CRITICAL
Network
|
sam2p_project
|
sam2p
|
In sam2p 0.49.3, a heap-based buffer overflow exists in the pcxLoadImage24 function of the file in_pcx.cpp.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-14628
|
2024-11-21 12:13 |
2017-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252277
|
9.8 |
CRITICAL
Network
|
imagemagick canonical
|
imagemagick ubuntu_linux
|
ImageMagick 7.0.7-0 Q16 has a NULL Pointer Dereference vulnerability in the function sixel_decode in coders/sixel.c.
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-14626
|
2024-11-21 12:13 |
2017-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252278
|
9.8 |
CRITICAL
Network
|
imagemagick canonical
|
imagemagick ubuntu_linux
|
ImageMagick 7.0.7-0 Q16 has a NULL Pointer Dereference vulnerability in the function sixel_output_create in coders/sixel.c.
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-14625
|
2024-11-21 12:13 |
2017-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252279
|
9.8 |
CRITICAL
Network
|
imagemagick canonical
|
imagemagick ubuntu_linux
|
ImageMagick 7.0.7-0 Q16 has a NULL Pointer Dereference vulnerability in the function PostscriptDelegateMessage in coders/ps.c.
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-14624
|
2024-11-21 12:13 |
2017-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252280
|
8.1 |
HIGH
Network
|
go-ldap_project
|
ldap
|
In the ldap.v2 (aka go-ldap) package through 2.5.0 for Go, an attacker may be able to login with an empty password. This issue affects an application using this package if these conditions are met: (…
|
CWE-287
Improper Authentication
|
CVE-2017-14623
|
2024-11-21 12:13 |
2017-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|