|
250241
|
5.0 |
MEDIUM
Local
|
libplist_project
|
libplist
|
The parse_data_node function in bplist.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (memory allocation error) via a crafted plist file.
|
CWE-20 CWE-787 CWE-190
Improper Input Validation Out-of-bounds Write Integer Overflow or Wraparound
|
CVE-2017-6440
|
2024-11-21 12:29 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250242
|
5.0 |
MEDIUM
Local
|
libplist_project
|
libplist
|
Heap-based buffer overflow in the parse_string_node function in bplist.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (out-of-bounds write) via a crafted plist fi…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-6439
|
2024-11-21 12:29 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250243
|
7.3 |
HIGH
Local
|
libplist_project
|
libplist
|
Heap-based buffer overflow in the parse_unicode_node function in bplist.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (out-of-bounds write) and possibly code exe…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-6438
|
2024-11-21 12:29 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250244
|
5.0 |
MEDIUM
Local
|
libplist_project
|
libplist
|
The base64encode function in base64.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (out-of-bounds read) via a crafted plist file.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-6437
|
2024-11-21 12:29 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250245
|
5.0 |
MEDIUM
Local
|
libplist_project
|
libplist
|
The parse_string_node function in bplist.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (memory allocation error) via a crafted plist file.
|
CWE-119 CWE-20
Incorrect Access of Indexable Resource ('Range Error') Improper Input Validation
|
CVE-2017-6436
|
2024-11-21 12:29 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250246
|
5.0 |
MEDIUM
Local
|
libplist_project
|
libplist
|
The parse_string_node function in bplist.c in libimobiledevice libplist 1.12 allows local users to cause a denial of service (memory corruption) via a crafted plist file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-6435
|
2024-11-21 12:29 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250247
|
6.5 |
MEDIUM
Local
|
libcacard_project
|
libcacard
|
Memory leak in the vcard_apdu_new function in card_7816.c in libcacard before 2.5.3 allows local guest OS users to cause a denial of service (host memory consumption) via vectors related to allocatin…
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2017-6414
|
2024-11-21 12:29 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250248
|
6.5 |
MEDIUM
Local
|
virglrenderer_project
|
virglrenderer
|
Memory leak in the vrend_create_vertex_elements_state function in vrend_renderer.c in virglrenderer allows local guest OS users to cause a denial of service (host memory consumption) via a large numb…
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2017-6386
|
2024-11-21 12:29 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250249
|
8.8 |
HIGH
Network
|
netgear
|
dgn2200_firmware
|
Cross-site request forgery (CSRF) vulnerability in NETGEAR DGN2200 routers with firmware 10.0.0.20 through 10.0.0.50 allows remote attackers to hijack the authentication of users for requests that pe…
|
CWE-352
Origin Validation Error
|
CVE-2017-6366
|
2024-11-21 12:29 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
250250
|
6.5 |
MEDIUM
Local
|
virglrenderer_project
|
virglrenderer
|
Memory leak in the add_shader_program function in vrend_renderer.c in virglrenderer before 0.6.0 allows local guest OS users to cause a denial of service (host memory consumption) via vectors involvi…
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2017-6317
|
2024-11-21 12:29 |
2017-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|