|
248101
|
8.8 |
HIGH
Network
|
adobe
|
flash_player
|
Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable memory corruption vulnerability due to a concurrency error when manipulating a display list. Successful exploitation could lead …
|
CWE-787
Out-of-bounds Write
|
CVE-2017-2930
|
2024-11-21 12:24 |
2017-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248102
|
8.8 |
HIGH
Network
|
adobe
|
flash_player
|
Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable memory corruption vulnerability related to setting visual mode effects. Successful exploitation could lead to arbitrary code exe…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-2928
|
2024-11-21 12:24 |
2017-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248103
|
8.8 |
HIGH
Network
|
adobe
|
flash_player
|
Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable heap overflow vulnerability when processing Adobe Texture Format files. Successful exploitation could lead to arbitrary code exe…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-2927
|
2024-11-21 12:24 |
2017-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248104
|
8.8 |
HIGH
Network
|
adobe
|
flash_player
|
Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable memory corruption vulnerability related to processing of atoms in MP4 files. Successful exploitation could lead to arbitrary cod…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-2926
|
2024-11-21 12:24 |
2017-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248105
|
8.8 |
HIGH
Network
|
adobe
|
flash_player
|
Adobe Flash Player versions 24.0.0.186 and earlier have an exploitable memory corruption vulnerability in the JPEG XR codec. Successful exploitation could lead to arbitrary code execution.
|
CWE-787
Out-of-bounds Write
|
CVE-2017-2925
|
2024-11-21 12:24 |
2017-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248106
|
7.5 |
HIGH
Network
|
apple
|
remote_desktop
|
A cryptographic weakness existed in the authentication protocol of Remote Desktop. This issue was addressed by implementing the Secure Remote Password authentication protocol. This issue is fixed in …
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2017-2488
|
2024-11-21 12:23 |
2021-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248107
|
3.3 |
LOW
Local
|
apple
|
iphone_os
|
An issue existed in preventing the uploading of CallKit call history to iCloud. This issue was addressed through improved logic. This issue is fixed in iOS 10.2.1. Updates for CallKit call history ar…
|
NVD-CWE-noinfo
|
CVE-2017-2375
|
2024-11-21 12:23 |
2021-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248108
|
7.5 |
HIGH
Network
|
dropbear_ssh_project
|
dropbear_ssh
|
It was found that dropbear before version 2013.59 with GSSAPI leaks whether given username is valid or invalid. When an invalid username is given, the GSSAPI authentication failure was incorrectly co…
|
CWE-287
Improper Authentication
|
CVE-2017-2659
|
2024-11-21 12:23 |
2019-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248109
|
5.9 |
MEDIUM
Network
|
apple
|
iphone_os
|
In iOS before 11.2, exchange rates were retrieved from HTTP rather than HTTPS. This was addressed by enabling HTTPS for exchange rates.
|
CWE-254
7PK - Security Features
|
CVE-2017-2411
|
2024-11-21 12:23 |
2019-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248110
|
6.5 |
MEDIUM
Network
|
redhat
|
libvirt
|
A NULL pointer deference flaw was found in the way libvirt from 2.5.0 to 3.0.0 handled empty drives. A remote authenticated attacker could use this flaw to crash libvirtd daemon resulting in denial o…
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-2635
|
2024-11-21 12:23 |
2018-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|