|
257321
|
9.8 |
CRITICAL
Network
|
redhat adobe
|
enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation flash_player
|
An issue was discovered in Adobe Flash Player 27.0.0.183 and earlier versions. This vulnerability occurs as a result of a computation that reads data that is past the end of the target buffer due to …
|
CWE-125
Out-of-bounds Read
|
CVE-2017-11213
|
2024-11-21 12:07 |
2017-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257322
|
7.0 |
HIGH
Local
|
google
|
android
|
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in a video driver, a race condition exists which can potentially lead to a buffer overf…
|
CWE-119 CWE-362
Incorrect Access of Indexable Resource ('Range Error') Race Condition
|
CVE-2017-11049
|
2024-11-21 12:07 |
2017-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257323
|
7.8 |
HIGH
Local
|
google
|
android
|
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in a graphics driver ioctl handler, the lack of copy_from_user() function calls may res…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11047
|
2024-11-21 12:07 |
2017-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257324
|
7.0 |
HIGH
Local
|
google
|
android
|
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in a camera driver function, a race condition exists which can lead to a Use After Free…
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2017-11045
|
2024-11-21 12:07 |
2017-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257325
|
7.0 |
HIGH
Local
|
google
|
android
|
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in a KGSL driver function, a race condition exists which can lead to a Use After Free c…
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2017-11044
|
2024-11-21 12:07 |
2017-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257326
|
7.5 |
HIGH
Network
|
adobe
|
coldfusion
|
Adobe ColdFusion has an XML external entity (XXE) injection vulnerability. This affects Update 4 and earlier versions for ColdFusion 2016, and Update 12 and earlier versions for ColdFusion 11.
|
CWE-611
XXE
|
CVE-2017-11286
|
2024-11-21 12:07 |
2017-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257327
|
6.1 |
MEDIUM
Network
|
adobe
|
coldfusion
|
Adobe ColdFusion has a cross-site scripting (XSS) vulnerability. This affects Update 4 and earlier versions for ColdFusion 2016, and Update 12 and earlier versions for ColdFusion 11.
|
CWE-79
Cross-site Scripting
|
CVE-2017-11285
|
2024-11-21 12:07 |
2017-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257328
|
9.8 |
CRITICAL
Network
|
adobe
|
coldfusion
|
Adobe ColdFusion has an Untrusted Data Deserialization vulnerability. This affects Update 4 and earlier versions for ColdFusion 2016, and Update 12 and earlier versions for ColdFusion 11.
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2017-11284
|
2024-11-21 12:07 |
2017-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257329
|
9.8 |
CRITICAL
Network
|
adobe
|
coldfusion
|
Adobe ColdFusion has an Untrusted Data Deserialization vulnerability. This affects Update 4 and earlier versions for ColdFusion 2016, and Update 12 and earlier versions for ColdFusion 11.
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2017-11283
|
2024-11-21 12:07 |
2017-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
257330
|
9.8 |
CRITICAL
Network
|
adobe redhat
|
flash_player enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation
|
Adobe Flash Player has an exploitable memory corruption vulnerability in the MP4 atom parser. Successful exploitation could lead to arbitrary code execution. This affects 26.0.0.151 and earlier.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-11282
|
2024-11-21 12:07 |
2017-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|