|
248971
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox
|
A memory corruption vulnerability in Skia that can occur when using transforms to make gradients, resulting in a potentially exploitable crash. This vulnerability affects Firefox < 51.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-5377
|
2024-11-21 12:27 |
2018-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248972
|
9.8 |
CRITICAL
Network
|
debian redhat mozilla
|
debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation enterprise_linux enterprise_linux_server_aus enterprise_linux_server_eus thunderbird
|
Use-after-free while manipulating XSL in XSLT documents. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.
|
CWE-416
Use After Free
|
CVE-2017-5376
|
2024-11-21 12:27 |
2018-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248973
|
9.8 |
CRITICAL
Network
|
redhat mozilla debian
|
enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation thunderbird firefox_esr firefox debian_linux
|
JIT code allocation can allow for a bypass of ASLR and DEP protections leading to potential memory corruption attacks. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox <…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-5375
|
2024-11-21 12:27 |
2018-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248974
|
9.8 |
CRITICAL
Network
|
mozilla
|
firefox
|
Memory safety bugs were reported in Firefox 50.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-5374
|
2024-11-21 12:27 |
2018-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248975
|
7.5 |
HIGH
Network
|
debian redhat mozilla
|
debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation enterprise_linux enterprise_linux_server_aus enterprise_linux_server_eus thunderbird
|
Hashed codes of JavaScript objects are shared between pages. This allows for pointer leaks because an object's address can be discovered through hash codes, and also allows for data leakage of an obj…
|
CWE-200
Information Exposure
|
CVE-2017-5378
|
2024-11-21 12:27 |
2018-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248976
|
9.8 |
CRITICAL
Network
|
mozilla debian redhat
|
firefox thunderbird firefox_esr debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation
|
Memory safety bugs were reported in Firefox 50.1 and Firefox ESR 45.6. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be explo…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-5373
|
2024-11-21 12:27 |
2018-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248977
|
7.8 |
HIGH
Local
|
advantech
|
webaccess
|
Advantech WebAccess 8.1 and earlier contains a DLL hijacking vulnerability which may allow an attacker to run a malicious DLL file within the search path resulting in execution of arbitrary code.
|
CWE-427
Uncontrolled Search Path Element
|
CVE-2017-5175
|
2024-11-21 12:27 |
2018-05-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248978
|
5.4 |
MEDIUM
Network
|
tibco
|
datasynapse_gridserver_manager
|
The GridServer Broker, and GridServer Director components of TIBCO Software Inc. TIBCO DataSynapse GridServer Manager contain vulnerabilities which may allow an authenticated user to perform cross-si…
|
CWE-79
Cross-site Scripting
|
CVE-2017-5536
|
2024-11-21 12:27 |
2018-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248979
|
6.8 |
MEDIUM
Adjacent
|
tibco
|
datasynapse_gridserver_manager
|
The GridServer Broker, GridServer Driver, and GridServer Engine components of TIBCO Software Inc. TIBCO DataSynapse GridServer Manager contain vulnerabilities related to both the improper use of encr…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2017-5535
|
2024-11-21 12:27 |
2018-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248980
|
7.5 |
HIGH
Network
|
netiq
|
imanager
|
NetIQ iManager before 3.0.3 delivered a SSL private key in a Java application (JAR file) for authentication to Sentinel, allowing attackers to extract and establish their own connections to the Senti…
|
CWE-287
Improper Authentication
|
CVE-2017-5189
|
2024-11-21 12:27 |
2018-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|