|
1231
|
7.4
4.3
|
HIGH
Network
|
Adobe Flash Player versions 26.0.0.137 and earlier have a security bypass vulnerability that leads to information disclosure when performing URL redirect.
|
CWE-601
Open Redirect
|
CVE-2017-3085
|
cpe:2.3:o:redhat:enterprise_linux:6.0:*
|
|
|
|
|
2024-11-21 12:24
2017-08-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1232
|
7.0
4.4
|
HIGH
Local
|
Multiple integer overflows in the block drivers in QEMU, possibly before 2.0.0, allow local users to cause a denial of service (crash) via a crafted catalog size in (1) the parallels_open function in…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2014-0143
|
cpe:2.3:o:redhat:enterprise_linux:6.0:*
|
|
|
|
|
2024-11-21 11:01
2017-08-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1233
|
6.5
4.0
|
MEDIUM
Network
|
The mod_dontdothat component of the mod_dav_svn Apache module in Subversion as packaged in Red Hat Enterprise Linux 5.11 does not properly detect recursion during entity expansion, which allows remot…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2016-6312
|
cpe:2.3:o:redhat:enterprise_linux:5.11:*
|
|
|
|
|
2024-11-21 11:55
2017-07-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1234
|
7.5
5.0
|
HIGH
Network
|
There is an invalid free in Image::printIFDStructure that leads to a Segmentation fault in Exiv2 0.26. A crafted input will lead to a remote denial of service attack.
|
CWE-416
Use After Free
|
CVE-2017-9953
|
cpe:2.3:o:redhat:enterprise_linux:7.0:*
|
|
|
|
|
2024-11-21 12:37
2017-06-27
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1235
|
7.0
6.9
|
HIGH
Local
|
libffi requests an executable stack allowing attackers to more easily trigger arbitrary code execution by overwriting the stack. Please note that libffi is used by a number of other libraries. It was…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-1000376
|
cpe:2.3:o:redhat:enterprise_linux:7.0:* cpe:2.3:o:redhat:enterprise_linux:6.0:*
|
|
|
|
|
2024-11-21 12:04
2017-06-20
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1236
|
7.8
7.2
|
HIGH
Local
|
glibc contains a vulnerability that allows specially crafted LD_LIBRARY_PATH values to manipulate the heap/stack, causing them to alias, potentially resulting in arbitrary code execution. Please note…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2017-1000366
|
cpe:2.3:o:redhat:enterprise_linux:7.0:* cpe:2.3:o:redhat:enterprise_linux:6.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2024-11-21 12:04
2017-06-20
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1237
|
8.8
9.3
|
HIGH
Network
|
Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable memory corruption vulnerability in the Graphics class. Successful exploitation could lead to arbitrary code execution.
|
CWE-787
Out-of-bounds Write
|
CVE-2017-3074
|
cpe:2.3:o:redhat:enterprise_linux:6.0:*
|
|
|
|
|
2024-11-21 12:24
2017-05-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1238
|
8.8
9.3
|
HIGH
Network
|
Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable use after free vulnerability when handling multiple mask properties of display objects, aka memory corruption. Successful exploi…
|
CWE-416
Use After Free
|
CVE-2017-3073
|
cpe:2.3:o:redhat:enterprise_linux:6.0:*
|
|
|
|
|
2024-11-21 12:24
2017-05-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1239
|
8.8
9.3
|
HIGH
Network
|
Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable memory corruption vulnerability in the BitmapData class. Successful exploitation could lead to arbitrary code execution.
|
CWE-787
Out-of-bounds Write
|
CVE-2017-3072
|
cpe:2.3:o:redhat:enterprise_linux:6.0:*
|
|
|
|
|
2024-11-21 12:24
2017-05-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1240
|
8.8
9.3
|
HIGH
Network
|
Adobe Flash Player versions 25.0.0.148 and earlier have an exploitable use after free vulnerability when masking display objects. Successful exploitation could lead to arbitrary code execution.
|
CWE-416
Use After Free
|
CVE-2017-3071
|
cpe:2.3:o:redhat:enterprise_linux:6.0:*
|
|
|
|
|
2024-11-21 12:24
2017-05-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|