|
248751
|
6.5 |
MEDIUM
Local
|
virglrenderer_project
|
virglrenderer
|
The util_format_is_pure_uint function in vrend_renderer.c in Virgil 3d project (aka virglrenderer) 0.6.0 and earlier allows local guest OS users to cause a denial of service (NULL pointer dereference…
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-5937
|
2024-11-21 12:28 |
2017-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248752
|
5.5 |
MEDIUM
Local
|
qemu suse
|
qemu linux_enterprise_server linux_enterprise_software_development_kit linux_enterprise_desktop linux_enterprise_server_for_sap
|
Integer overflow in the emulated_apdu_from_guest function in usb/dev-smartcard-reader.c in Quick Emulator (Qemu), when built with the CCID Card device emulator support, allows local users to cause a …
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-5898
|
2024-11-21 12:28 |
2017-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248753
|
5.5 |
MEDIUM
Local
|
fedoraproject netpbm_project
|
fedora netpbm
|
tiffttopnm in netpbm 10.47.63 does not properly use the libtiff TIFFRGBAImageGet function, which allows remote attackers to cause a denial of service (out-of-bounds read and write) via a crafted tiff…
|
CWE-125 CWE-787
Out-of-bounds Read Out-of-bounds Write
|
CVE-2017-5849
|
2024-11-21 12:28 |
2017-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248754
|
9.8 |
CRITICAL
Network
|
fatek
|
ethernet_module_configuration_tool_cbe_firmware ethernet_module_configuration_tool_cbeh_firmware ethernet_module_configuration_tool_cm25e_firmware ethernet_module_configuration_tool_cm55e_fi…
|
An issue was discovered in Fatek Automation PLC Ethernet Module. The affected Ether_cfg software configuration tool runs on the following Fatek PLCs: CBEH versions prior to V3.6 Build 170215, CBE ver…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-6023
|
2024-11-21 12:28 |
2017-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248755
|
5.5 |
MEDIUM
Local
|
virglrenderer_project
|
virglrenderer
|
Heap-based buffer overflow in the vrend_create_vertex_elements_state function in vrend_renderer.c in virglrenderer before 0.6.0 allows local guest OS users to cause a denial of service (out-of-bounds…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-5994
|
2024-11-21 12:28 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248756
|
6.5 |
MEDIUM
Local
|
virglrenderer_project
|
virglrenderer
|
Memory leak in the vrend_renderer_init_blit_ctx function in vrend_blitter.c in virglrenderer before 0.6.0 allows local guest OS users to cause a denial of service (host memory consumption) via a larg…
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2017-5993
|
2024-11-21 12:28 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248757
|
6.1 |
MEDIUM
Network
|
debian opensuse_project opensuse viewvc
|
debian_linux leap viewvc
|
Cross-site scripting (XSS) vulnerability in the nav_path function in lib/viewvc.py in ViewVC before 1.0.14 and 1.1.x before 1.1.26 allows remote attackers to inject arbitrary web script or HTML via t…
|
CWE-79
Cross-site Scripting
|
CVE-2017-5938
|
2024-11-21 12:28 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248758
|
3.3 |
LOW
Local
|
linuxcontainers
|
lxc
|
lxc-user-nic in Linux Containers (LXC) allows local users with a lxc-usernet allocation to create network interfaces on the host and choose the name of those interfaces by leveraging lack of netns ow…
|
CWE-862
Missing Authorization
|
CVE-2017-5985
|
2024-11-21 12:28 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248759
|
5.5 |
MEDIUM
Local
|
virglrenderer_project
|
virglrenderer
|
Stack-based buffer overflow in the vrend_decode_set_framebuffer_state function in vrend_decode.c in virglrenderer before 926b9b3460a48f6454d8bbe9e44313d86a65447f, as used in Quick Emulator (QEMU), al…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-5957
|
2024-11-21 12:28 |
2017-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248760
|
9.8 |
CRITICAL
Network
|
bitlbee
|
bitlbee-libpurple bitlbee
|
bitlbee-libpurple before 3.5.1 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) and possibly execute arbitrary code via a file transfer request for a contact …
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-5668
|
2024-11-21 12:28 |
2017-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|