|
247421
|
7.5 |
HIGH
Network
|
surina
|
soundtouch
|
The FIRFilter::evaluateFilterMulti function in FIRFilter.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (assertion failure and applicati…
|
CWE-617
Reachable Assertion
|
CVE-2018-14045
|
2024-11-21 12:48 |
2018-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247422
|
7.5 |
HIGH
Network
|
surina
|
soundtouch
|
The RateTransposer::setChannels function in RateTransposer.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (assertion failure and applica…
|
CWE-617
Reachable Assertion
|
CVE-2018-14044
|
2024-11-21 12:48 |
2018-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247423
|
9.8 |
CRITICAL
Network
|
monetra
|
mstdlib
|
mstdlib (aka the M Standard Library for C) 1.2.0 has incorrect file access control in situations where M_fs_perms_can_access attempts to delete an existing file (that lacks public read/write access) …
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2018-14043
|
2024-11-21 12:48 |
2018-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247424
|
6.1 |
MEDIUM
Network
|
getbootstrap
|
bootstrap
|
In Bootstrap before 4.1.2, XSS is possible in the data-container property of tooltip.
|
CWE-79
Cross-site Scripting
|
CVE-2018-14042
|
2024-11-21 12:48 |
2018-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247425
|
6.1 |
MEDIUM
Network
|
getbootstrap
|
bootstrap
|
In Bootstrap before 4.1.2, XSS is possible in the data-target property of scrollspy.
|
CWE-79
Cross-site Scripting
|
CVE-2018-14041
|
2024-11-21 12:48 |
2018-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247426
|
6.1 |
MEDIUM
Network
|
debian getbootstrap
|
debian_linux bootstrap
|
In Bootstrap before 4.1.2, XSS is possible in the collapse data-parent attribute.
|
CWE-79
Cross-site Scripting
|
CVE-2018-14040
|
2024-11-21 12:48 |
2018-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247427
|
6.5 |
MEDIUM
Network
|
freedesktop
|
accountsservice
|
Directory Traversal with ../ sequences occurs in AccountsService before 0.6.50 because of an insufficient path check in user_change_icon_file_authorized_cb() in user.c.
|
CWE-22
Path Traversal
|
CVE-2018-14036
|
2024-11-21 12:48 |
2018-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247428
|
8.8 |
HIGH
Network
|
hdfgroup
|
hdf5
|
An issue was discovered in the HDF HDF5 1.8.20 library. There is a heap-based buffer over-read in the function H5VM_memcpyvv in H5VM.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-14035
|
2024-11-21 12:48 |
2018-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247429
|
8.8 |
HIGH
Network
|
hdfgroup
|
hdf5
|
An issue was discovered in the HDF HDF5 1.8.20 library. There is an out of bounds read in the function H5O_pline_reset in H5Opline.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-14034
|
2024-11-21 12:48 |
2018-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
247430
|
8.8 |
HIGH
Network
|
hdfgroup
|
hdf5
|
An issue was discovered in the HDF HDF5 1.8.20 library. There is a heap-based buffer over-read in the function H5O_layout_decode in H5Olayout.c, related to HDmemcpy.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-14033
|
2024-11-21 12:48 |
2018-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|