CVE Feed

    Dashboard / CVE

    6.1
    Medium

    CVE-2018-11350

    Last Modified: 21 Nov 2024

    An issue was discovered in Jirafeau before 3.4.1. The file "search by name" form is affected by one Cross-Site Scripting vulnerability via the name parameter.

    Published: 7 Jul 2018
    6.1
    Medium

    CVE-2018-11351

    Last Modified: 21 Nov 2024

    script.php in Jirafeau before 3.4.1 is affected by two stored Cross-Site Scripting (XSS) vulnerabilities. These are stored within the shared files description file and allow the execution of a JavaScript payload each time an administrator searches or lists uploaded files. These two injections could be triggered without authentication, and target the administrator. The attack vectors are the Content-Type field and the filename parameter.

    Published: 7 Jul 2018
    9.8
    Critical

    CVE-2018-13421

    Last Modified: 21 Nov 2024

    Fast C++ CSV Parser (aka fast-cpp-csv-parser) before 2018-07-06 has a heap-based buffer over-read in io::trim_chars in csv.h.

    Published: 7 Jul 2018
    6.1
    Medium

    CVE-2018-13422

    Last Modified: 21 Nov 2024

    TCExam before 14.1.2 has XSS via an ff_ or xl_ field.

    Published: 7 Jul 2018
    9.8
    Critical

    CVE-2018-14349

    Last Modified: 21 Nov 2024

    An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. imap/command.c mishandles a NO response without a message.

    Published: 7 Jul 2018
    6.5
    Medium

    CVE-2018-13440

    Last Modified: 13 Aug 2025

    The audiofile Audio File Library 0.3.6 has a NULL pointer dereference bug in ModuleState::setup in modules/ModuleState.cpp, which allows an attacker to cause a denial of service via a crafted caf file, as demonstrated by sfconvert.

    Published: 7 Jul 2018
    8.8
    High

    CVE-2016-6538

    Last Modified: 21 Nov 2024

    The TrackR Bravo mobile app stores the account password used to authenticate to the cloud API in cleartext in the cache.db file. Updated apps, version 5.1.6 for iOS and 2.2.5 for Android, have been released by the vendor to address the vulnerabilities in CVE-2016-6538, CVE-2016-6539, CVE-2016-6540 and CVE-2016-6541.

    Published: 6 Jul 2018
    6.5
    Medium

    CVE-2016-6540

    Last Modified: 21 Nov 2024

    Unauthenticated access to the cloud-based service maintained by TrackR Bravo is allowed for querying or sending GPS data for any Trackr device by using the tracker ID number which can be discovered as described in CVE-2016-6539. Updated apps, version 5.1.6 for iOS and 2.2.5 for Android, have been released by the vendor to address the vulnerabilities in CVE-2016-6538, CVE-2016-6539, CVE-2016-6540 and CVE-2016-6541.

    Published: 6 Jul 2018
    3.5
    Low

    CVE-2016-6539

    Last Modified: 21 Nov 2024

    The Trackr device ID is constructed of a manufacturer identifier of four zeroes followed by the BLE MAC address in reverse. The MAC address can be obtained by being in close proximity to the Bluetooth device, effectively exposing the device ID. The ID can be used to track devices. Updated apps, version 5.1.6 for iOS and 2.2.5 for Android, have been released by the vendor to address the vulnerabilities in CVE-2016-6538, CVE-2016-6539, CVE-2016-6540 and CVE-2016-6541.

    Published: 6 Jul 2018
    8.8
    High

    CVE-2016-6541

    Last Modified: 21 Nov 2024

    TrackR Bravo device allows unauthenticated pairing, which enables unauthenticated connected applications to write to various device attributes. Updated apps, version 5.1.6 for iOS and 2.2.5 for Android, have been released by the vendor to address the vulnerabilities in CVE-2016-6538, CVE-2016-6539, CVE-2016-6540 and CVE-2016-6541.

    Published: 6 Jul 2018
    9.8
    Critical

    CVE-2018-13410

    Last Modified: 18 Sept 2026

    Info-ZIP Zip 3.0, when the -T and -TT command-line options are used, allows attackers to cause a denial of service (invalid free and application crash) or possibly have unspecified other impact because of an off-by-one error. NOTE: it is unclear whether there are realistic scenarios in which an untrusted party controls the -TT value, given that the entire purpose of -TT is execution of arbitrary commands

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-3570

    Last Modified: 21 Nov 2024

    In the cpuidle driver in all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the Linux kernel, the list_for_each macro was not used correctly which could lead to an untrusted pointer dereference.

    Published: 6 Jul 2018
    9.8
    Critical

    CVE-2018-3586

    Last Modified: 21 Nov 2024

    An integer overflow to buffer overflow vulnerability exists in the ADSPRPC heap manager in all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the Linux kernel.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-3587

    Last Modified: 21 Nov 2024

    In a firmware memory dump feature in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android), a Use After Free condition can occur.

    Published: 6 Jul 2018
    7
    High

    CVE-2018-5853

    Last Modified: 21 Nov 2024

    A race condition exists in a driver in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-05-05 potentially leading to a use-after-free condition.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-5858

    Last Modified: 21 Nov 2024

    In the audio debugfs in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-07-05, out of bounds access can occur.

    Published: 6 Jul 2018
    7
    High

    CVE-2018-5859

    Last Modified: 21 Nov 2024

    Due to a race condition in the MDSS MDP driver in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-07-05, a Use After Free condition can occur.

    Published: 6 Jul 2018
    5.5
    Medium

    CVE-2018-5864

    Last Modified: 21 Nov 2024

    While processing a WMI_APFIND event in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-07-05, a buffer over-read and information leak can potentially occur.

    Published: 6 Jul 2018
    5.5
    Medium

    CVE-2018-5865

    Last Modified: 21 Nov 2024

    While processing a debug log event from firmware in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-07-05, an integer underflow and/or buffer over-read can occur.

    Published: 6 Jul 2018
    8
    High

    CVE-2018-5872

    Last Modified: 21 Nov 2024

    While parsing over-the-air information elements in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-07-05, the use of an out-of-range pointer offset can occur.

    Published: 6 Jul 2018
    7.5
    High

    CVE-2018-5886

    Last Modified: 21 Nov 2024

    A pointer in an ADSPRPC command is not properly validated in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android), which can lead to kernel memory being accessed.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-5907

    Last Modified: 21 Nov 2024

    Possible buffer overflow in msm_adsp_stream_callback_put due to lack of input validation of user-provided data that leads to integer overflow in all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the Linux kernel.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2017-15851

    Last Modified: 21 Nov 2024

    Lack of copy_from_user and information leak in function "msm_ois_subdev_do_ioctl, file msm_ois.c can lead to a camera crash in all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the Linux kernel

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-5862

    Last Modified: 21 Nov 2024

    In __wlan_hdd_cfg80211_vendor_scan() in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-07-05, when SCAN_SSIDS and QCA_WLAN_VENDOR_ATTR_SCAN_FREQUENCIES are parsed, a buffer overwrite can potentially occur.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-11304

    Last Modified: 21 Nov 2024

    Possible buffer overflow in msm_adsp_stream_callback_put due to lack of input validation of user-provided data that leads to integer overflow in all Android releases(Android for MSM, Firefox OS for MSM, QRD Android) from CAF using the Linux kernel.

    Published: 6 Jul 2018
    9.8
    Critical

    CVE-2018-3608

    Last Modified: 21 Nov 2024

    A vulnerability in Trend Micro Maximum Security's (Consumer) 2018 (versions 12.0.1191 and below) User-Mode Hooking (UMH) driver could allow an attacker to create a specially crafted packet that could alter a vulnerable system in such a way that malicious code could be injected into other processes.

    Published: 6 Jul 2018
    9.8
    Critical

    CVE-2018-5855

    Last Modified: 21 Nov 2024

    While padding or shrinking a nested wmi packet in all Android releases from CAF using the Linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-07-05, a buffer over-read can potentially occur.

    Published: 6 Jul 2018
    4.9
    Medium

    CVE-2018-13407

    Last Modified: 21 Nov 2024

    A CSRF issue was discovered in Jirafeau before 3.4.1. The "delete file" feature on the admin panel is not protected against automated requests and could be abused.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-3569

    Last Modified: 21 Nov 2024

    A buffer over-read can occur during a fast initial link setup (FILS) connection in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-3597

    Last Modified: 21 Nov 2024

    In the ADSP RPC driver in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, an arbitrary kernel write can occur.

    Published: 6 Jul 2018
    7.5
    High

    CVE-2018-5829

    Last Modified: 21 Nov 2024

    In wlan_hdd_cfg80211_set_privacy_ibss() in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, a buffer over-read can potentially occur.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-5830

    Last Modified: 21 Nov 2024

    While processing the HTT_T2H_MSG_TYPE_MGMT_TX_COMPL_IND message, a buffer overflow can potentially occur in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-5831

    Last Modified: 21 Nov 2024

    In the KGSL driver in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, a reference counting error can lead to a Use After Free condition.

    Published: 6 Jul 2018
    7
    High

    CVE-2018-5832

    Last Modified: 21 Nov 2024

    Due to a race condition in a camera driver ioctl handler in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, a Use After Free condition can occur.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-5834

    Last Modified: 21 Nov 2024

    In __wlan_hdd_cfg80211_vendor_scan(), a buffer overwrite can potentially occur in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-5838

    Last Modified: 21 Nov 2024

    Improper Validation of Array Index In the adreno OpenGL driver in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear, an out-of-bounds access can occur in SurfaceFlinger.

    Published: 6 Jul 2018
    8.8
    High

    CVE-2018-5875

    Last Modified: 21 Nov 2024

    While parsing an mp4 file, an integer overflow leading to a buffer overflow can occur in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear.

    Published: 6 Jul 2018
    8.8
    High

    CVE-2018-5876

    Last Modified: 21 Nov 2024

    While parsing an mp4 file, a buffer overflow can occur in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear.

    Published: 6 Jul 2018
    9.8
    Critical

    CVE-2018-5882

    Last Modified: 21 Nov 2024

    While parsing a Flac file with a corrupted comment block, a buffer over-read can occur in Snapdragon Automobile, Snapdragon Mobile and Snapdragon Wear.

    Published: 6 Jul 2018
    9.8
    Critical

    CVE-2018-5885

    Last Modified: 21 Nov 2024

    While loading dynamic fonts, a buffer overflow may occur if the number of segments in the font file is out of range in Snapdragon Mobile and Snapdragon Wear.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-5888

    Last Modified: 21 Nov 2024

    While processing the system path, an out of bounds access can occur in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.

    Published: 6 Jul 2018
    7.5
    High

    CVE-2018-5892

    Last Modified: 21 Nov 2024

    The Touch Pal application can collect user behavior data without awareness by the user in Snapdragon Mobile and Snapdragon Wear.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-5890

    Last Modified: 21 Nov 2024

    If the fdt_totalsize is reported as 0 for the current device tree, it bypasses an error check for a valid device tree in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-5893

    Last Modified: 21 Nov 2024

    While processing a message from firmware in htt_t2h_msg_handler_fast() in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, a buffer overwrite can occur.

    Published: 6 Jul 2018
    7.1
    High

    CVE-2018-5896

    Last Modified: 21 Nov 2024

    In Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, kernel panic may happen due to out-of-bound read, caused by not checking source buffer length against length of packet stream to be copied.

    Published: 6 Jul 2018
    7.5
    High

    CVE-2018-5897

    Last Modified: 21 Nov 2024

    While reading the data from buffer in dci_process_ctrl_status() there can be buffer over-read problem if the len is not checked correctly in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-5898

    Last Modified: 21 Nov 2024

    Integer overflow can occur in msm_pcm_adsp_stream_cmd_put() function if the user supplied data "param_length" goes beyond certain limit in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.

    Published: 6 Jul 2018
    7.8
    High

    CVE-2018-5899

    Last Modified: 21 Nov 2024

    In Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05, whenever TDLS connection is setup, we are freeing the netbuf in ol_tx_completion_handler and after that, we are accessing it in NBUF_UPDATE_TX_PKT_COUNT causing a use after free.

    Published: 6 Jul 2018
    5.5
    Medium

    CVE-2017-14893

    Last Modified: 21 Nov 2024

    While flashing meta image, a buffer over-read may potentially occur when the image size is smaller than the image header size or is smaller than the image header size + total image header entry in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.

    Published: 6 Jul 2018
    5.5
    Medium

    CVE-2017-14872

    Last Modified: 21 Nov 2024

    While flashing a meta image, a buffer over-read can potentially occur when the number of images are out of the maximum range of 32 in Android releases from CAF using the linux kernel (Android for MSM, Firefox OS for MSM, QRD Android) before security patch level 2018-06-05.

    Published: 6 Jul 2018