|
249771
|
5.5 |
MEDIUM
Local
|
radare
|
radare2
|
The r_strbuf_fini() function in radare2 2.5.0 allows remote attackers to cause a denial of service (invalid free and application crash) via a crafted ELF file because of an uninitialized variable in …
|
CWE-908
Use of Uninitialized Resource
|
CVE-2018-11383
|
2024-11-21 12:43 |
2018-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249772
|
5.5 |
MEDIUM
Local
|
radare
|
radare2
|
The _inst__sts() function in radare2 2.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted binary file.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-11382
|
2024-11-21 12:43 |
2018-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249773
|
5.5 |
MEDIUM
Local
|
radare
|
radare2
|
The string_scan_range() function in radare2 2.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted binary file.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-11381
|
2024-11-21 12:43 |
2018-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249774
|
5.5 |
MEDIUM
Local
|
radare
|
radare2
|
The parse_import_ptr() function in radare2 2.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted Mach-O file.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-11380
|
2024-11-21 12:43 |
2018-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249775
|
5.5 |
MEDIUM
Local
|
radare
|
radare2
|
The get_debug_info() function in radare2 2.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted PE file.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-11379
|
2024-11-21 12:43 |
2018-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249776
|
7.8 |
HIGH
Local
|
radare
|
radare2
|
The wasm_dis() function in libr/asm/arch/wasm/wasm.c in or possibly have unspecified other impact via a crafted WASM file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2018-11378
|
2024-11-21 12:43 |
2018-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249777
|
5.5 |
MEDIUM
Local
|
radare
|
radare2
|
The avr_op_analyze() function in radare2 2.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted binary file.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-11377
|
2024-11-21 12:43 |
2018-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249778
|
5.5 |
MEDIUM
Local
|
radare
|
radare2
|
The r_read_le32() function in radare2 2.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted ELF file.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-11376
|
2024-11-21 12:43 |
2018-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249779
|
5.5 |
MEDIUM
Local
|
radare
|
radare2
|
The _inst__lds() function in radare2 2.5.0 allows remote attackers to cause a denial of service (heap-based out-of-bounds read and application crash) via a crafted binary file.
|
CWE-125
Out-of-bounds Read
|
CVE-2018-11375
|
2024-11-21 12:43 |
2018-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
249780
|
9.8 |
CRITICAL
Network
|
iscripts
|
eswap
|
iScripts eSwap v2.4 has SQL injection via the "salelistdetailed.php" User Panel ToId parameter.
|
CWE-89
SQL Injection
|
CVE-2018-11373
|
2024-11-21 12:43 |
2018-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|