|
254811
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The move_pages system call in mm/migrate.c in the Linux kernel before 4.12.9 doesn't check the effective uid of the target process, enabling a local attacker to learn the memory layout of a setuid ex…
|
CWE-200
Information Exposure
|
CVE-2017-14140
|
2024-11-21 12:12 |
2017-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
254812
|
5.5 |
MEDIUM
Local
|
gnome
|
gedit
|
libgedit.a in GNOME gedit through 3.22.1 allows remote attackers to cause a denial of service (CPU consumption) via a file that begins with many '\0' characters.
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2017-14108
|
2024-11-21 12:12 |
2017-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
254813
|
6.5 |
MEDIUM
Network
|
imagemagick
|
imagemagick
|
ImageMagick 7.0.6-2 has a memory leak vulnerability in WriteMSLImage in coders/msl.c.
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2017-14139
|
2024-11-21 12:12 |
2017-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
254814
|
9.8 |
CRITICAL
Network
|
imagemagick
|
imagemagick
|
ImageMagick 7.0.6-5 has a memory leak vulnerability in ReadWEBPImage in coders/webp.c because memory is not freed in certain error cases, as demonstrated by VP8 errors.
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2017-14138
|
2024-11-21 12:12 |
2017-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
254815
|
7.5 |
HIGH
Network
|
imagemagick
|
imagemagick
|
ReadWEBPImage in coders/webp.c in ImageMagick 7.0.6-5 has an issue where memory allocation is excessive because it depends only on a length field in a header.
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2017-14137
|
2024-11-21 12:12 |
2017-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
254816
|
6.5 |
MEDIUM
Network
|
opencv debian
|
opencv debian_linux
|
OpenCV (Open Source Computer Vision Library) 3.3 has an out-of-bounds write error in the function FillColorRow1 in utils.cpp when reading an image file by using cv::imread. NOTE: this vulnerability e…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-14136
|
2024-11-21 12:12 |
2017-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
254817
|
9.8 |
CRITICAL
Network
|
dreambox
|
opendreambox
|
enigma2-plugins/blob/master/webadmin/src/WebChilds/Script.py in the webadmin plugin for opendreambox 2.0.0 allows remote attackers to execute arbitrary OS commands via shell metacharacters in the com…
|
CWE-78
OS Command
|
CVE-2017-14135
|
2024-11-21 12:12 |
2017-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
254818
|
6.5 |
MEDIUM
Network
|
jasper_project debian
|
jasper debian_linux
|
JasPer 1.900.8, 1.900.9, 1.900.10, 1.900.11, 1.900.12, 1.900.13, 1.900.14, 1.900.15, 1.900.16, 1.900.17, 1.900.18, 1.900.19, 1.900.20, 1.900.21, 1.900.22, 1.900.23, 1.900.24, 1.900.25, 1.900.26, 1.90…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-14132
|
2024-11-21 12:12 |
2017-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
254819
|
5.5 |
MEDIUM
Local
|
gnu
|
binutils
|
The _bfd_elf_parse_attributes function in elf-attrs.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of servi…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-14130
|
2024-11-21 12:12 |
2017-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
254820
|
5.5 |
MEDIUM
Local
|
gnu
|
binutils
|
The read_section function in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (parse_comp_u…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-14129
|
2024-11-21 12:12 |
2017-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|