|
252551
|
9.8 |
CRITICAL
Network
|
wink
|
wink
|
In version 6.1.0.19 and prior of Wink Labs's Wink - Smart Home Android app, the OAuth token used by the app to authorize user access is not stored in an encrypted and secure manner.
|
CWE-312 CWE-922
Cleartext Storage of Sensitive Information Insecure Storage of Sensitive Information
|
CVE-2017-5249
|
2024-11-21 12:27 |
2018-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252552
|
8.8 |
HIGH
Network
|
google debian
|
chrome debian_linux
|
Off-by-one read/write on the heap in Blink in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to corrupt memory and possibly leak information and potentially execute code via a crafted …
|
CWE-787
Out-of-bounds Write
|
CVE-2017-5133
|
2024-11-21 12:27 |
2018-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252553
|
8.8 |
HIGH
Network
|
google debian
|
chrome debian_linux
|
Inappropriate implementation in V8 in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page, aka incorrect WebAssembly stack man…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-5132
|
2024-11-21 12:27 |
2018-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252554
|
8.8 |
HIGH
Network
|
google debian
|
chrome debian_linux
|
An integer overflow in Skia in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page, aka an out-of-bounds write.
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2017-5131
|
2024-11-21 12:27 |
2018-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252555
|
8.8 |
HIGH
Network
|
google debian xmlsoft
|
chrome debian_linux libxml2
|
An integer overflow in xmlmemory.c in libxml2 before 2.9.5, as used in Google Chrome prior to 62.0.3202.62 and other products, allowed a remote attacker to potentially exploit heap corruption via a c…
|
CWE-787
Out-of-bounds Write
|
CVE-2017-5130
|
2024-11-21 12:27 |
2018-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252556
|
8.8 |
HIGH
Network
|
google debian
|
chrome debian_linux
|
A use after free in WebAudio in Blink in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page.
|
CWE-416
Use After Free
|
CVE-2017-5129
|
2024-11-21 12:27 |
2018-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252557
|
8.8 |
HIGH
Network
|
google debian
|
chrome debian_linux
|
Heap buffer overflow in Blink in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page, related to WebGL.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-5128
|
2024-11-21 12:27 |
2018-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252558
|
8.8 |
HIGH
Network
|
google debian
|
chrome debian_linux
|
Use after free in PDFium in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.
|
CWE-416
Use After Free
|
CVE-2017-5127
|
2024-11-21 12:27 |
2018-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252559
|
8.8 |
HIGH
Network
|
google debian
|
chrome debian_linux
|
A use after free in PDFium in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file.
|
CWE-416
Use After Free
|
CVE-2017-5126
|
2024-11-21 12:27 |
2018-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
252560
|
8.8 |
HIGH
Network
|
google debian
|
chrome debian_linux
|
Heap buffer overflow in Skia in Google Chrome prior to 62.0.3202.62 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-5125
|
2024-11-21 12:27 |
2018-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|