|
247731
|
5.5 |
MEDIUM
Local
|
jasper_project
|
jasper
|
Integer overflow in libjasper/jpc/jpc_tsfb.c in JasPer 1.900.17 allows remote attackers to cause a denial of service (crash) via a crafted file.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-5501
|
2024-11-21 12:27 |
2017-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247732
|
5.5 |
MEDIUM
Local
|
jasper_project
|
jasper
|
libjasper/jpc/jpc_dec.c in JasPer 1.900.17 allows remote attackers to cause a denial of service (crash) via vectors involving left shift of a negative value.
|
NVD-CWE-noinfo
|
CVE-2017-5500
|
2024-11-21 12:27 |
2017-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247733
|
5.5 |
MEDIUM
Local
|
jasper_project
|
jasper
|
Integer overflow in libjasper/jpc/jpc_dec.c in JasPer 1.900.17 allows remote attackers to cause a denial of service (crash) via a crafted file.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-5499
|
2024-11-21 12:27 |
2017-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247734
|
5.5 |
MEDIUM
Local
|
jasper_project
|
jasper
|
libjasper/include/jasper/jas_math.h in JasPer 1.900.17 allows remote attackers to cause a denial of service (crash) via vectors involving left shift of a negative value.
|
NVD-CWE-noinfo
|
CVE-2017-5498
|
2024-11-21 12:27 |
2017-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247735
|
9.8 |
CRITICAL
Network
|
tigervnc
|
tigervnc
|
Buffer overflow in the ModifiablePixelBuffer::fillRect function in TigerVNC before 1.7.1 allows remote servers to execute arbitrary code via an RRE message with subrectangle outside framebuffer bound…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-5581
|
2024-11-21 12:27 |
2017-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247736
|
9.8 |
CRITICAL
Network
|
opentext
|
documentum_d2
|
OpenText Documentum D2 (formerly EMC Documentum D2) 4.x allows remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the BeanShell (bsh) and Apache Commons C…
|
CWE-20
Improper Input Validation
|
CVE-2017-5586
|
2024-11-21 12:27 |
2017-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247737
|
8.8 |
HIGH
Network
|
opentext
|
documentum_content_server
|
OpenText Documentum Content Server (formerly EMC Documentum Content Server) 7.3, when PostgreSQL Database is used and return_top_results_row_based config option is false, does not properly restrict D…
|
CWE-74
Injection
|
CVE-2017-5585
|
2024-11-21 12:27 |
2017-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247738
|
9.8 |
CRITICAL
Network
|
dotcms
|
dotcms
|
An issue was discovered in dotCMS through 3.6.1. The findChildrenByFilter() function which is called by the web accessible path /categoriesServlet performs string interpolation and direct SQL query e…
|
CWE-89
SQL Injection
|
CVE-2017-5344
|
2024-11-21 12:27 |
2017-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247739
|
7.5 |
HIGH
Network
|
fedoraproject gnu
|
fedora ed
|
regex.c in GNU ed before 1.14.1 allows attackers to cause a denial of service (crash) via a malformed command, which triggers an invalid free.
|
CWE-416
Use After Free
|
CVE-2017-5357
|
2024-11-21 12:27 |
2017-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247740
|
8.9 |
HIGH
Network
|
abbott
|
merlin\@home_firmware
|
An issue was discovered in St. Jude Medical Merlin@home, versions prior to Version 8.2.2 (RF models: EX1150; Inductive models: EX1100; and Inductive models: EX1100 with MerlinOnDemand capability). Th…
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-5149
|
2024-11-21 12:27 |
2017-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|