|
250771
|
5.5 |
MEDIUM
Local
|
exempi_project
|
exempi
|
An issue was discovered in Exempi before 2.4.3. The PostScript_Support::ConvertToDate function in XMPFiles/source/FormatSupport/PostScript_Support.cpp allows remote attackers to cause a denial of ser…
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-18237
|
2024-11-21 12:19 |
2018-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250772
|
5.5 |
MEDIUM
Local
|
exempi_project debian canonical
|
exempi debian_linux ubuntu_linux
|
An issue was discovered in Exempi before 2.4.4. The ASF_Support::ReadHeaderObject function in XMPFiles/source/FormatSupport/ASF_Support.cpp allows remote attackers to cause a denial of service (infin…
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2017-18236
|
2024-11-21 12:19 |
2018-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250773
|
5.5 |
MEDIUM
Local
|
exempi_project
|
exempi
|
An issue was discovered in Exempi before 2.4.3. The VPXChunk class in XMPFiles/source/FormatSupport/WEBP_Support.cpp does not ensure nonzero widths and heights, which allows remote attackers to cause…
|
CWE-20
Improper Input Validation
|
CVE-2017-18235
|
2024-11-21 12:19 |
2018-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250774
|
7.8 |
HIGH
Local
|
exempi_project debian canonical
|
exempi debian_linux ubuntu_linux
|
An issue was discovered in Exempi before 2.4.3. It allows remote attackers to cause a denial of service (invalid memcpy with resultant use-after-free) or possibly have unspecified other impact via a …
|
CWE-416
Use After Free
|
CVE-2017-18234
|
2024-11-21 12:19 |
2018-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250775
|
5.5 |
MEDIUM
Local
|
exempi_project debian canonical
|
exempi debian_linux ubuntu_linux
|
An issue was discovered in Exempi before 2.4.4. Integer overflow in the Chunk class in XMPFiles/source/FormatSupport/RIFF.cpp allows remote attackers to cause a denial of service (infinite loop) via …
|
CWE-190 CWE-835
Integer Overflow or Wraparound Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2017-18233
|
2024-11-21 12:19 |
2018-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250776
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The Serial Attached SCSI (SAS) implementation in the Linux kernel through 4.15.9 mishandles a mutex within libsas, which allows local users to cause a denial of service (deadlock) by triggering certa…
|
NVD-CWE-noinfo
|
CVE-2017-18232
|
2024-11-21 12:19 |
2018-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250777
|
6.5 |
MEDIUM
Network
|
graphicsmagick debian
|
graphicsmagick debian_linux
|
An issue was discovered in GraphicsMagick 1.3.26. A NULL pointer dereference vulnerability was found in the function ReadEnhMetaFile in coders/emf.c, which allows attackers to cause a denial of servi…
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-18231
|
2024-11-21 12:19 |
2018-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250778
|
6.5 |
MEDIUM
Network
|
graphicsmagick debian
|
graphicsmagick debian_linux
|
An issue was discovered in GraphicsMagick 1.3.26. A NULL pointer dereference vulnerability was found in the function ReadCINEONImage in coders/cineon.c, which allows attackers to cause a denial of se…
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-18230
|
2024-11-21 12:19 |
2018-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250779
|
6.5 |
MEDIUM
Network
|
graphicsmagick debian
|
graphicsmagick debian_linux
|
An issue was discovered in GraphicsMagick 1.3.26. An allocation failure vulnerability was found in the function ReadTIFFImage in coders/tiff.c, which allows attackers to cause a denial of service via…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2017-18229
|
2024-11-21 12:19 |
2018-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250780
|
5.4 |
MEDIUM
Network
|
bmc
|
remedy_action_request_system
|
Remedy Mid Tier in BMC Remedy AR System 9.1 allows XSS via the ATTKey parameter in an arsys/servlet/AttachServlet request.
|
CWE-79
Cross-site Scripting
|
CVE-2017-18228
|
2024-11-21 12:19 |
2018-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|