|
249211
|
9.8 |
CRITICAL
Network
|
gnu
|
binutils
|
elflink.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, has a "member access within null pointer" undefined behavior issue, which might allow remote a…
|
CWE-476
NULL Pointer Dereference
|
CVE-2017-7614
|
2024-11-21 12:32 |
2017-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249212
|
5.5 |
MEDIUM
Local
|
elfutils_project debian canonical
|
elfutils debian_linux ubuntu_linux
|
elflint.c in elfutils 0.168 does not validate the number of sections and the number of segments, which allows remote attackers to cause a denial of service (memory consumption) via a crafted ELF file.
|
CWE-20
Improper Input Validation
|
CVE-2017-7613
|
2024-11-21 12:32 |
2017-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249213
|
5.5 |
MEDIUM
Local
|
elfutils_project debian canonical
|
elfutils debian_linux ubuntu_linux
|
The check_sysv_hash function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-7612
|
2024-11-21 12:32 |
2017-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249214
|
5.5 |
MEDIUM
Local
|
elfutils_project debian canonical
|
elfutils debian_linux ubuntu_linux
|
The check_symtab_shndx function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-7611
|
2024-11-21 12:32 |
2017-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249215
|
5.5 |
MEDIUM
Local
|
elfutils_project debian canonical
|
elfutils debian_linux ubuntu_linux
|
The check_group function in elflint.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-7610
|
2024-11-21 12:32 |
2017-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249216
|
5.5 |
MEDIUM
Local
|
elfutils_project
|
elfutils
|
elf_compress.c in elfutils 0.168 does not validate the zlib compression factor, which allows remote attackers to cause a denial of service (memory consumption) via a crafted ELF file.
|
CWE-20
Improper Input Validation
|
CVE-2017-7609
|
2024-11-21 12:32 |
2017-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249217
|
5.5 |
MEDIUM
Local
|
elfutils_project debian canonical
|
elfutils debian_linux ubuntu_linux
|
The ebl_object_note_type_name function in eblobjnotetypename.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-7608
|
2024-11-21 12:32 |
2017-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249218
|
5.5 |
MEDIUM
Local
|
elfutils_project
|
elfutils
|
The handle_gnu_hash function in readelf.c in elfutils 0.168 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted ELF file.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-7607
|
2024-11-21 12:32 |
2017-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249219
|
6.5 |
MEDIUM
Network
|
imagemagick
|
imagemagick
|
coders/rle.c in ImageMagick 7.0.5-4 has an "outside the range of representable values of type unsigned char" undefined behavior issue, which might allow remote attackers to cause a denial of service …
|
CWE-20
Improper Input Validation
|
CVE-2017-7606
|
2024-11-21 12:32 |
2017-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249220
|
7.8 |
HIGH
Local
|
libaacplus_project
|
libaacplus
|
aacplusenc.c in HE-AAC+ Codec (aka libaacplus) 2.0.2 has an assertion failure, which might allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other i…
|
CWE-617
Reachable Assertion
|
CVE-2017-7605
|
2024-11-21 12:32 |
2017-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|