|
246791
|
8.8 |
HIGH
Network
|
exiv2
|
exiv2
|
Exiv2 0.26 has a heap-based buffer over-read in WebPImage::decodeChunks in webpimage.cpp.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-14046
|
2024-11-21 12:48 |
2018-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246792
|
7.5 |
HIGH
Network
|
surina
|
soundtouch
|
The FIRFilter::evaluateFilterMulti function in FIRFilter.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (assertion failure and applicati…
|
CWE-617
Reachable Assertion
|
CVE-2018-14045
|
2024-11-21 12:48 |
2018-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246793
|
7.5 |
HIGH
Network
|
surina
|
soundtouch
|
The RateTransposer::setChannels function in RateTransposer.cpp in libSoundTouch.a in Olli Parviainen SoundTouch 2.0 allows remote attackers to cause a denial of service (assertion failure and applica…
|
CWE-617
Reachable Assertion
|
CVE-2018-14044
|
2024-11-21 12:48 |
2018-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246794
|
9.8 |
CRITICAL
Network
|
monetra
|
mstdlib
|
mstdlib (aka the M Standard Library for C) 1.2.0 has incorrect file access control in situations where M_fs_perms_can_access attempts to delete an existing file (that lacks public read/write access) …
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2018-14043
|
2024-11-21 12:48 |
2018-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246795
|
6.1 |
MEDIUM
Network
|
getbootstrap
|
bootstrap
|
In Bootstrap before 4.1.2, XSS is possible in the data-container property of tooltip.
|
CWE-79
Cross-site Scripting
|
CVE-2018-14042
|
2024-11-21 12:48 |
2018-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246796
|
6.1 |
MEDIUM
Network
|
getbootstrap
|
bootstrap
|
In Bootstrap before 4.1.2, XSS is possible in the data-target property of scrollspy.
|
CWE-79
Cross-site Scripting
|
CVE-2018-14041
|
2024-11-21 12:48 |
2018-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246797
|
6.1 |
MEDIUM
Network
|
debian getbootstrap
|
debian_linux bootstrap
|
In Bootstrap before 4.1.2, XSS is possible in the collapse data-parent attribute.
|
CWE-79
Cross-site Scripting
|
CVE-2018-14040
|
2024-11-21 12:48 |
2018-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246798
|
6.5 |
MEDIUM
Network
|
freedesktop
|
accountsservice
|
Directory Traversal with ../ sequences occurs in AccountsService before 0.6.50 because of an insufficient path check in user_change_icon_file_authorized_cb() in user.c.
|
CWE-22
Path Traversal
|
CVE-2018-14036
|
2024-11-21 12:48 |
2018-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246799
|
8.8 |
HIGH
Network
|
hdfgroup
|
hdf5
|
An issue was discovered in the HDF HDF5 1.8.20 library. There is a heap-based buffer over-read in the function H5VM_memcpyvv in H5VM.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-14035
|
2024-11-21 12:48 |
2018-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
246800
|
8.8 |
HIGH
Network
|
hdfgroup
|
hdf5
|
An issue was discovered in the HDF HDF5 1.8.20 library. There is an out of bounds read in the function H5O_pline_reset in H5Opline.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-14034
|
2024-11-21 12:48 |
2018-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|