|
250031
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
Race condition in the sctp_wait_for_sndbuf function in net/sctp/socket.c in the Linux kernel before 4.9.11 allows local users to cause a denial of service (assertion failure and panic) via a multithr…
|
CWE-362 CWE-617
Race Condition Reachable Assertion
|
CVE-2017-5986
|
2024-11-21 12:28 |
2017-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250032
|
7.5 |
HIGH
Network
|
wireshark debian
|
wireshark debian_linux
|
In Wireshark 2.2.4 and earlier, a crafted or malformed STANAG 4607 capture file will cause an infinite loop and memory exhaustion. If the packet size field in a packet header is null, the offset to r…
|
CWE-835
Loop with Unreachable Exit Condition ('Infinite Loop')
|
CVE-2017-6014
|
2024-11-21 12:28 |
2017-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250033
|
5.4 |
MEDIUM
Network
|
intersect_alliance
|
snare_epilog
|
Cross-site scripting (XSS) vulnerability in InterSect Alliance SNARE Epilog for UNIX version 1.5 allows remote authenticated users to inject arbitrary web script or HTML via the str_log_name paramete…
|
CWE-79
Cross-site Scripting
|
CVE-2017-5998
|
2024-11-21 12:28 |
2017-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250034
|
5.5 |
MEDIUM
Local
|
icoutils_project debian redhat
|
icoutils debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus enterprise_linux_server_aus enterprise_linux_serve…
|
An issue was discovered in icoutils 0.31.1. An out-of-bounds read leading to a buffer overflow was observed in the "simple_vec" function in the "extract.c" source file. This affects icotool.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-6011
|
2024-11-21 12:28 |
2017-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250035
|
5.5 |
MEDIUM
Local
|
icoutils_project debian redhat
|
icoutils debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus enterprise_linux_server_aus enterprise_linux_serve…
|
An issue was discovered in icoutils 0.31.1. A buffer overflow was observed in the "extract_icons" function in the "extract.c" source file. This issue can be triggered by processing a corrupted ico fi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-6010
|
2024-11-21 12:28 |
2017-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250036
|
5.5 |
MEDIUM
Local
|
icoutils_project debian redhat
|
icoutils debian_linux enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_server_tus enterprise_linux_server_aus enterprise_linux_serve…
|
An issue was discovered in icoutils 0.31.1. A buffer overflow was observed in the "decode_ne_resource_id" function in the "restable.c" source file. This is happening because the "len" parameter for m…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-6009
|
2024-11-21 12:28 |
2017-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250037
|
7.5 |
HIGH
Network
|
pcre
|
pcre
|
The compile_bracket_matchingpath function in pcre_jit_compile.c in PCRE through 8.x before revision 1680 (e.g., the PHP 7.1.1 bundled version) allows remote attackers to cause a denial of service (ou…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-6004
|
2024-11-21 12:28 |
2017-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250038
|
7.5 |
HIGH
Network
|
sap
|
sap_kernel
|
The SAP Message Server HTTP daemon in SAP KERNEL 7.21-7.49 allows remote attackers to cause a denial of service (memory consumption and process crash) via multiple msgserver/group?group= requests wit…
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2017-5997
|
2024-11-21 12:28 |
2017-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250039
|
8.2 |
HIGH
Local
|
python
|
openpyxl
|
Openpyxl 2.4.1 resolves external entities by default, which allows remote attackers to conduct XXE attacks via a crafted .xlsx document.
|
CWE-611
XXE
|
CVE-2017-5992
|
2024-11-21 12:28 |
2017-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250040
|
5.5 |
MEDIUM
Local
|
artifex
|
mupdf
|
Heap-based buffer overflow in the fz_subsample_pixmap function in fitz/pixmap.c in MuPDF 1.10a allows remote attackers to cause a denial of service (out-of-bounds read and crash) via a crafted image.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-5896
|
2024-11-21 12:28 |
2017-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|