|
251391
|
6.1 |
MEDIUM
Network
|
liferay
|
liferay_portal
|
In Liferay Portal 6.1.0, the tags section has XSS via a Public Render Parameter (p_r_p) value, as demonstrated by p_r_p_564233524_tag.
|
CWE-79
Cross-site Scripting
|
CVE-2017-17868
|
2024-11-21 12:18 |
2017-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251392
|
7.8 |
HIGH
Local
|
artifex debian
|
mupdf debian_linux
|
pdf/pdf-write.c in Artifex MuPDF before 1.12.0 mishandles certain length changes when a repair operation occurs during a clean operation, which allows remote attackers to cause a denial of service (b…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-17866
|
2024-11-21 12:18 |
2017-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251393
|
3.3 |
LOW
Local
|
linux debian
|
linux_kernel debian_linux
|
kernel/bpf/verifier.c in the Linux kernel through 4.14.8 mishandles states_equal comparisons between the pointer data type and the UNKNOWN_VALUE data type, which allows local users to obtain potentia…
|
CWE-200
Information Exposure
|
CVE-2017-17864
|
2024-11-21 12:18 |
2017-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251394
|
7.8 |
HIGH
Local
|
linux debian
|
linux_kernel debian_linux
|
kernel/bpf/verifier.c in the Linux kernel 4.9.x through 4.9.71 does not check the relationship between pointer values and the BPF stack, which allows local users to cause a denial of service (integer…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-17863
|
2024-11-21 12:18 |
2017-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251395
|
5.5 |
MEDIUM
Local
|
linux debian
|
linux_kernel debian_linux
|
kernel/bpf/verifier.c in the Linux kernel through 4.14.8 ignores unreachable code, even though it would still be processed by JIT compilers. This behavior, also considered an improper branch-pruning …
|
CWE-20
Improper Input Validation
|
CVE-2017-17862
|
2024-11-21 12:18 |
2017-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251396
|
6.1 |
MEDIUM
Network
|
samsung
|
internet_browser
|
Samsung Internet Browser 6.2.01.12 allows remote attackers to bypass the Same Origin Policy, and conduct UXSS attacks to obtain sensitive information, via vectors involving an IFRAME element inside X…
|
CWE-79
Cross-site Scripting
|
CVE-2017-17859
|
2024-11-21 12:18 |
2017-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251397
|
7.8 |
HIGH
Local
|
linux debian
|
linux_kernel debian_linux
|
The check_stack_boundary function in kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other im…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-17857
|
2024-11-21 12:18 |
2017-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251398
|
7.8 |
HIGH
Local
|
linux debian
|
linux_kernel debian_linux
|
kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging the lack of stack-…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-17856
|
2024-11-21 12:18 |
2017-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251399
|
7.8 |
HIGH
Local
|
linux debian
|
linux_kernel debian_linux
|
kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging improper use of po…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-17855
|
2024-11-21 12:18 |
2017-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
251400
|
7.8 |
HIGH
Local
|
linux debian
|
linux_kernel debian_linux
|
kernel/bpf/verifier.c in the Linux kernel through 4.14.8 allows local users to cause a denial of service (integer overflow and memory corruption) or possibly have unspecified other impact by leveragi…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-17854
|
2024-11-21 12:18 |
2017-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|