|
249131
|
7.5 |
HIGH
Network
|
cisco
|
sourcefire_snort
|
Cisco Sourcefire Snort 3.0 before build 233 has a Buffer Overread related to use of a decoder array. The size was off by one making it possible to read past the end of the array with an ether type of…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-6658
|
2024-11-21 12:30 |
2017-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249132
|
7.5 |
HIGH
Network
|
cisco
|
snort\+\+
|
Cisco Sourcefire Snort 3.0 before build 233 mishandles Ether Type Validation. Since valid ether type and IP protocol numbers do not overlap, Snort++ stores all protocol decoders in a single array. Th…
|
NVD-CWE-noinfo
|
CVE-2017-6657
|
2024-11-21 12:30 |
2017-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249133
|
7.5 |
HIGH
Network
|
cisco
|
webex_meetings_server
|
A vulnerability in Cisco WebEx Meetings Server could allow unauthenticated, remote attackers to gain information that could allow them to access scheduled customer meetings. The vulnerability is due …
|
CWE-200
Information Exposure
|
CVE-2017-6651
|
2024-11-21 12:30 |
2017-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249134
|
7.8 |
HIGH
Local
|
libraw
|
libraw
|
A boundary error within the "parse_tiff_ifd()" function (internal/dcraw_common.cpp) in LibRaw versions before 0.18.2 can be exploited to cause a memory corruption via e.g. a specially crafted KDC fil…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-6887
|
2024-11-21 12:30 |
2017-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249135
|
9.8 |
CRITICAL
Network
|
libraw
|
libraw
|
An error within the "parse_tiff_ifd()" function (internal/dcraw_common.cpp) in LibRaw versions before 0.18.2 can be exploited to corrupt memory.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-6886
|
2024-11-21 12:30 |
2017-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249136
|
9.8 |
CRITICAL
Network
|
flexerasoftware
|
flexnet_manager_suite
|
An error when handling certain external commands and services related to the FlexNet Inventory Agent and FlexNet Beacon of the Flexera Software FlexNet Manager Suite 2017 before 2017 R1 and 2014 R3 t…
|
NVD-CWE-noinfo
|
CVE-2017-6885
|
2024-11-21 12:30 |
2017-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249137
|
9.8 |
CRITICAL
Network
|
libraw
|
libraw-demosaic-pack-gpl2
|
A boundary error within the "foveon_load_camf()" function (dcraw_foveon.c) when initializing a huffman table in LibRaw-demosaic-pack-GPL2 before 0.18.2 can be exploited to cause a stack-based buffer …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-6890
|
2024-11-21 12:30 |
2017-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249138
|
9.8 |
CRITICAL
Network
|
libraw
|
libraw-demosaic-pack-gpl2
|
An integer overflow error within the "foveon_load_camf()" function (dcraw_foveon.c) in LibRaw-demosaic-pack-GPL2 before 0.18.2 can be exploited to cause a heap-based buffer overflow.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-6889
|
2024-11-21 12:30 |
2017-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249139
|
4.9 |
MEDIUM
Network
|
siemens
|
simatic_wincc_\(tia_portal\) simatic_wincc simatic_wincc_runtime
|
A vulnerability was discovered in Siemens SIMATIC WinCC (V7.3 before Upd 11 and V7.4 before SP1), SIMATIC WinCC Runtime Professional (V13 before SP2 and V14 before SP1), SIMATIC WinCC (TIA Portal) Pr…
|
CWE-20
Improper Input Validation
|
CVE-2017-6867
|
2024-11-21 12:30 |
2017-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249140
|
6.5 |
MEDIUM
Adjacent
|
siemens
|
sinaut_st7cc simatic_step_7_\(tia_portal\) simatic_winac_rtx_2010 simatic_wincc_\(tia_portal\) sinumerik_808d_programming_tool simatic_winac_rtx_f_2010 simatic_wincc_flexible_2008
|
A vulnerability has been identified in Primary Setup Tool (PST) (All versions < V4.2 HF1), SIMATIC Automation Tool (All versions < V3.0), SIMATIC NET PC-Software (All versions < V14 SP1), SIMATIC PCS…
|
CWE-20
Improper Input Validation
|
CVE-2017-6865
|
2024-11-21 12:30 |
2017-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|