CVE Feed

    Dashboard / CVE

    Unknown

    CVE-2017-1000180

    Last Modified: 17 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-11100. Reason: This candidate is a reservation duplicate of CVE-2017-11100. Notes: All CVE users should reference CVE-2017-11100 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 20 Aug 2017
    Unknown

    CVE-2017-1000175

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by the Primary CNA. Further investigation showed that it was not a security issue. Notes: none

    Published: 20 Aug 2017
    8.8
    High

    CVE-2017-12976

    Last Modified: 20 Apr 2025

    git-annex before 6.20170818 allows remote attackers to execute arbitrary commands via an ssh URL with an initial dash character in the hostname, as demonstrated by an ssh://-eProxyCommand= URL, a related issue to CVE-2017-9800, CVE-2017-12836, CVE-2017-1000116, and CVE-2017-1000117.

    Published: 20 Aug 2017
    6.5
    Medium

    CVE-2017-12966

    Last Modified: 20 Apr 2025

    The asn1f_lookup_symbol_impl function in asn1fix_retrieve.c in libasn1fix.a in asn1c 0.9.28 allows remote attackers to cause a denial of service (segmentation fault) via a crafted .asn1 file.

    Published: 20 Aug 2017
    7.5
    High

    CVE-2017-12972

    Last Modified: 20 Apr 2025

    In Nimbus JOSE+JWT before 4.39, there is no integer-overflow check when converting length values from bytes to bits, which allows attackers to conduct HMAC bypass attacks by shifting Additional Authenticated Data (AAD) and ciphertext so that different plaintext is obtained for the same HMAC.

    Published: 20 Aug 2017
    3.1
    Low

    CVE-2017-12973

    Last Modified: 20 Apr 2025

    Nimbus JOSE+JWT before 4.39 proceeds improperly after detection of an invalid HMAC in authenticated AES-CBC decryption, which allows attackers to conduct a padding oracle attack.

    Published: 20 Aug 2017
    7.5
    High

    CVE-2017-12974

    Last Modified: 20 Apr 2025

    Nimbus JOSE+JWT before 4.36 proceeds with ECKey construction without ensuring that the public x and y coordinates are on the specified curve, which allows attackers to conduct an Invalid Curve Attack in environments where the JCE provider lacks the applicable curve validation.

    Published: 20 Aug 2017
    5.5
    Medium

    CVE-2017-14140

    Last Modified: 20 Apr 2025

    The move_pages system call in mm/migrate.c in the Linux kernel before 4.12.9 doesn't check the effective uid of the target process, enabling a local attacker to learn the memory layout of a setuid executable despite ASLR.

    Published: 20 Aug 2017
    8.8
    High

    CVE-2017-14151

    Last Modified: 20 Apr 2025

    An off-by-one error was discovered in opj_tcd_code_block_enc_allocate_data in lib/openjp2/tcd.c in OpenJPEG 2.2.0. The vulnerability causes an out-of-bounds write, which may lead to remote denial of service (heap-based buffer overflow affecting opj_mqc_flush in lib/openjp2/mqc.c and opj_t1_encode_cblk in lib/openjp2/t1.c) or possibly remote code execution.

    Published: 20 Aug 2017
    8.8
    High

    CVE-2017-14152

    Last Modified: 20 Apr 2025

    A mishandled zero case was discovered in opj_j2k_set_cinema_parameters in lib/openjp2/j2k.c in OpenJPEG 2.2.0. The vulnerability causes an out-of-bounds write, which may lead to remote denial of service (heap-based buffer overflow affecting opj_write_bytes_LE in lib/openjp2/cio.c and opj_j2k_write_sot in lib/openjp2/j2k.c) or possibly remote code execution.

    Published: 20 Aug 2017
    6.5
    Medium

    CVE-2017-12967

    Last Modified: 20 Apr 2025

    The getsym function in tekhex.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, allows remote attackers to cause a denial of service (stack-based buffer over-read and application crash) via a malformed tekhex binary.

    Published: 19 Aug 2017
    7.8
    High

    CVE-2017-11323

    Last Modified: 20 Apr 2025

    Stack-based buffer overflow in ESTsoft ALZip 8.51 and earlier allows remote attackers to execute arbitrary code via a crafted MS-DOS device file, as demonstrated by use of "AUX" as the initial substring of a filename.

    Published: 19 Aug 2017
    7.8
    High

    CVE-2018-10675

    Last Modified: 21 Nov 2024

    The do_get_mempolicy function in mm/mempolicy.c in the Linux kernel before 4.12.9 allows local users to cause a denial of service (use-after-free) or possibly have unspecified other impact via crafted system calls.

    Published: 19 Aug 2017
    7.5
    High

    CVE-2017-12964

    Last Modified: 20 Apr 2025

    There is a stack consumption issue in LibSass 3.4.5 that is triggered in the function Sass::Eval::operator() in eval.cpp. It will lead to a remote denial of service attack.

    Published: 18 Aug 2017
    7.5
    High

    CVE-2017-12963

    Last Modified: 20 Apr 2025

    There is an illegal address access in Sass::Eval::operator() in eval.cpp of LibSass 3.4.5, leading to a remote denial of service attack. NOTE: this is similar to CVE-2017-11555 but remains exploitable after the vendor's CVE-2017-11555 fix (available from GitHub after 2017-07-24).

    Published: 18 Aug 2017
    7.5
    High

    CVE-2017-12958

    Last Modified: 20 Apr 2025

    There is an illegal address access in the function output_hex() in data/data-out.c of the libpspp library in GNU PSPP before 1.0.1 that will lead to remote denial of service.

    Published: 18 Aug 2017
    7.5
    High

    CVE-2017-12959

    Last Modified: 20 Apr 2025

    There is a reachable assertion abort in the function dict_add_mrset() in data/dictionary.c of the libpspp library in GNU PSPP before 1.0.1 that will lead to a remote denial of service attack.

    Published: 18 Aug 2017
    7.5
    High

    CVE-2017-12960

    Last Modified: 20 Apr 2025

    There is a reachable assertion abort in the function dict_rename_var() in data/dictionary.c of the libpspp library in GNU PSPP before 1.0.1 that will lead to remote denial of service.

    Published: 18 Aug 2017
    7.5
    High

    CVE-2017-12961

    Last Modified: 20 Apr 2025

    There is an assertion abort in the function parse_attributes() in data/sys-file-reader.c of the libpspp library in GNU PSPP before 1.0.1 that will lead to remote denial of service.

    Published: 18 Aug 2017
    7.5
    High

    CVE-2017-12962

    Last Modified: 20 Apr 2025

    There are memory leaks in LibSass 3.4.5 triggered by deeply nested code, such as code with a long sequence of open parenthesis characters, leading to a remote denial of service attack.

    Published: 18 Aug 2017
    5.5
    Medium

    CVE-2017-8445

    Last Modified: 20 Apr 2025

    An error was found in the X-Pack Security TLS trust manager for versions 5.0.0 to 5.5.1. If reloading the trust material fails the trust manager will be replaced with an instance that trusts all certificates. This could allow any node using any certificate to join a cluster. The proper behavior in this instance is for the TLS trust manager to deny all certificates.

    Published: 18 Aug 2017
    5.3
    Medium

    CVE-2017-8446

    Last Modified: 20 Apr 2025

    The Reporting feature in X-Pack in versions prior to 5.5.2 and standalone Reporting plugin versions versions prior to 2.4.6 had an impersonation vulnerability. A user with the reporting_user role could execute a report with the permissions of another reporting user, possibly gaining access to sensitive data.

    Published: 18 Aug 2017
    7.8
    High

    CVE-2017-3756

    Last Modified: 20 Apr 2025

    A privilege escalation vulnerability was identified in Lenovo Active Protection System for ThinkPad systems versions earlier than 1.82.0.17. An attacker with local privileges could execute code with administrative privileges via an unquoted service path.

    Published: 18 Aug 2017
    9.8
    Critical

    CVE-2017-7364

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, in function __mdss_fb_copy_destscaler_data(), variable ds_data[i].scale may still point to a user-provided address (which could point to arbitrary kernel address), so on an error condition, this user-provided address will be freed (arbitrary free), and continued operation could result in use after free condition.

    Published: 18 Aug 2017
    7
    High

    CVE-2017-9684

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition in a USB driver can lead to a Use After Free condition.

    Published: 18 Aug 2017
    8.1
    High

    CVE-2017-9685

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition in a WLAN driver can lead to a Use After Free condition.

    Published: 18 Aug 2017
    7.8
    High

    CVE-2017-11160

    Last Modified: 20 Apr 2025

    Multiple untrusted search path vulnerabilities in installer in Synology Assistant before 6.1-15163 on Windows allows local attackers to execute arbitrary code and conduct DLL hijacking attack via a Trojan horse (1) shfolder.dll, (2) ntmarta.dll, (3) secur32.dll or (4) dwmapi.dll file in the current working directory.

    Published: 18 Aug 2017
    7.5
    High

    CVE-2017-9679

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, if a userspace string is not NULL-terminated, kernel memory contents can leak to system logs.

    Published: 18 Aug 2017
    7.5
    High

    CVE-2017-9680

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, if a pointer argument coming from userspace is invalid, a driver may use an uninitialized structure to log an error message.

    Published: 18 Aug 2017
    4.7
    Medium

    CVE-2017-9682

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, a race condition in two KGSL driver functions can lead to a Use After Free condition.

    Published: 18 Aug 2017
    7.8
    High

    CVE-2017-9678

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, in a video driver, memory corruption can potentially occur due to lack of bounds checking in a memcpy().

    Published: 18 Aug 2017
    9.8
    Critical

    CVE-2014-9971

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, disabling asserts causes an instruction inside of an assert to not be executed resulting in incorrect control flow.

    Published: 18 Aug 2017
    9.8
    Critical

    CVE-2014-9977

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in PlayReady DRM.

    Published: 18 Aug 2017
    9.8
    Critical

    CVE-2014-9978

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in a QTEE service.

    Published: 18 Aug 2017
    9.8
    Critical

    CVE-2014-9981

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, an overflow check in the USB interface was insufficient during boot.

    Published: 18 Aug 2017
    9.8
    Critical

    CVE-2015-0575

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, insecure ciphersuites were included in the default configuration.

    Published: 18 Aug 2017
    9.8
    Critical

    CVE-2015-4464

    Last Modified: 20 Apr 2025

    Kguard Digital Video Recorder 104, 108, v2 does not have any authorization or authentication between an ActiveX client and the application server.

    Published: 18 Aug 2017
    9.8
    Critical

    CVE-2015-8593

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in 1x call processing.

    Published: 18 Aug 2017
    9.8
    Critical

    CVE-2015-9034

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, a string can fail to be null-terminated in SIP leading to a buffer overflow.

    Published: 18 Aug 2017
    9.8
    Critical

    CVE-2015-9042

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists when processing a QMI message.

    Published: 18 Aug 2017
    9.8
    Critical

    CVE-2015-9047

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, a vulnerability exists in GNSS when performing a scan after bootup.

    Published: 18 Aug 2017
    9.8
    Critical

    CVE-2015-9051

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, a vulnerability exists in LTE where an assertion can be reached due to an improper bound on a length in a System Information message.

    Published: 18 Aug 2017
    9.8
    Critical

    CVE-2015-9067

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, a potential compiler optimization of memset() is addressed.

    Published: 18 Aug 2017
    9.8
    Critical

    CVE-2016-10346

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, an integer overflow vulnerability exists in the hypervisor.

    Published: 18 Aug 2017
    9.8
    Critical

    CVE-2016-10384

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, an assertion was potentially reachable in a WLAN driver ioctl.

    Published: 18 Aug 2017
    7.8
    High

    CVE-2016-10389

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, there is no size check for the images being flashed onto the NAND memory in their respective partitions, so there is a possibility of writing beyond the intended partition.

    Published: 18 Aug 2017
    6.1
    Medium

    CVE-2017-12948

    Last Modified: 20 Apr 2025

    Core\Admin\PFTemplater.php in the PressForward plugin 4.3.0 and earlier for WordPress has XSS in the PATH_INFO to wp-admin/admin.php, related to PHP_SELF.

    Published: 18 Aug 2017
    7.2
    High

    CVE-2017-12947

    Last Modified: 20 Apr 2025

    classes\controller\admin\modals.php in the Easy Modal plugin before 2.1.0 for WordPress has SQL injection in an untrash action with the id, ids, or modal parameter to wp-admin/admin.php, exploitable by administrators.

    Published: 18 Aug 2017
    9.8
    Critical

    CVE-2016-5871

    Last Modified: 20 Apr 2025

    In all Qualcomm products with Android releases from CAF using the Linux kernel, an integer overflow to buffer overflow vulnerability exists when loading an image file.

    Published: 18 Aug 2017
    7.5
    High

    CVE-2014-3451

    Last Modified: 20 Apr 2025

    OpenFire XMPP Server before 3.10 accepts self-signed certificates, which allows remote attackers to perform unspecified spoofing attacks.

    Published: 18 Aug 2017