|
251091
|
7.8 |
HIGH
Local
|
exempi_project debian canonical
|
exempi debian_linux ubuntu_linux
|
An issue was discovered in Exempi before 2.4.3. It allows remote attackers to cause a denial of service (invalid memcpy with resultant use-after-free) or possibly have unspecified other impact via a …
|
CWE-416
Use After Free
|
CVE-2017-18234
|
2024-11-21 12:19 |
2018-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251092
|
5.5 |
MEDIUM
Local
|
exempi_project debian canonical
|
exempi debian_linux ubuntu_linux
|
An issue was discovered in Exempi before 2.4.4. Integer overflow in the Chunk class in XMPFiles/source/FormatSupport/RIFF.cpp allows remote attackers to cause a denial of service (infinite loop) via …
|
CWE-190 CWE-835
Integer Overflow or Wraparound Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2017-18233
|
2024-11-21 12:19 |
2018-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251093
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The Serial Attached SCSI (SAS) implementation in the Linux kernel through 4.15.9 mishandles a mutex within libsas, which allows local users to cause a denial of service (deadlock) by triggering certa…
|
NVD-CWE-noinfo
|
CVE-2017-18232
|
2024-11-21 12:19 |
2018-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251094
|
6.5 |
MEDIUM
Network
|
graphicsmagick debian
|
graphicsmagick debian_linux
|
An issue was discovered in GraphicsMagick 1.3.26. A NULL pointer dereference vulnerability was found in the function ReadEnhMetaFile in coders/emf.c, which allows attackers to cause a denial of servi…
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-18231
|
2024-11-21 12:19 |
2018-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251095
|
6.5 |
MEDIUM
Network
|
graphicsmagick debian
|
graphicsmagick debian_linux
|
An issue was discovered in GraphicsMagick 1.3.26. A NULL pointer dereference vulnerability was found in the function ReadCINEONImage in coders/cineon.c, which allows attackers to cause a denial of se…
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-18230
|
2024-11-21 12:19 |
2018-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251096
|
6.5 |
MEDIUM
Network
|
graphicsmagick debian
|
graphicsmagick debian_linux
|
An issue was discovered in GraphicsMagick 1.3.26. An allocation failure vulnerability was found in the function ReadTIFFImage in coders/tiff.c, which allows attackers to cause a denial of service via…
|
CWE-770
Allocation of Resources Without Limits or Throttling
|
CVE-2017-18229
|
2024-11-21 12:19 |
2018-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251097
|
5.4 |
MEDIUM
Network
|
bmc
|
remedy_action_request_system
|
Remedy Mid Tier in BMC Remedy AR System 9.1 allows XSS via the ATTKey parameter in an arsys/servlet/AttachServlet request.
|
CWE-79
Cross-site Scripting
|
CVE-2017-18228
|
2024-11-21 12:19 |
2018-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251098
|
7.5 |
HIGH
Network
|
titanhq
|
webtitan_gateway
|
TitanHQ WebTitan Gateway has incorrect certificate validation for the TLS interception feature.
|
CWE-295
Improper Certificate Validation
|
CVE-2017-18227
|
2024-11-21 12:19 |
2018-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251099
|
5.5 |
MEDIUM
Local
|
jabberd2
|
jabberd2
|
The Gentoo net-im/jabberd2 package through 2.6.1 sets the ownership of /var/run/jabber to the jabber account, which might allow local users to kill arbitrary processes by leveraging access to this ac…
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2017-18226
|
2024-11-21 12:19 |
2018-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251100
|
7.8 |
HIGH
Local
|
jabberd2
|
jabberd2
|
The Gentoo net-im/jabberd2 package through 2.6.1 installs jabberd, jabberd2-c2s, jabberd2-router, jabberd2-s2s, and jabberd2-sm in /usr/bin owned by the jabber account, which might allow local users …
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2017-18225
|
2024-11-21 12:19 |
2018-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|