|
198701
|
7.5 |
HIGH
Network
|
debian clamav
|
debian_linux clamav
|
The ClamAV AntiVirus software versions 0.99.2 and prior contain a vulnerability that could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device…
|
CWE-416
Use After Free
|
CVE-2017-12374
|
2024-11-21 12:09 |
2018-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198702
|
9.8 |
CRITICAL
Network
|
debian x.org
|
debian_linux xorg-server
|
xorg-x11-server before 1.19.5 was missing length validation in RENDER extension allowing malicious X client to cause X server to crash or possibly execute arbitrary code.
|
CWE-20
Improper Input Validation
|
CVE-2017-12187
|
2024-11-21 12:09 |
2018-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198703
|
9.8 |
CRITICAL
Network
|
debian x.org
|
debian_linux xorg-server
|
xorg-x11-server before 1.19.5 was missing length validation in X-Resource extension allowing malicious X client to cause X server to crash or possibly execute arbitrary code.
|
CWE-20
Improper Input Validation
|
CVE-2017-12186
|
2024-11-21 12:09 |
2018-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198704
|
9.8 |
CRITICAL
Network
|
debian x.org
|
debian_linux xorg-server
|
xorg-x11-server before 1.19.5 was missing length validation in MIT-SCREEN-SAVER extension allowing malicious X client to cause X server to crash or possibly execute arbitrary code.
|
CWE-20
Improper Input Validation
|
CVE-2017-12185
|
2024-11-21 12:09 |
2018-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198705
|
9.8 |
CRITICAL
Network
|
debian x.org
|
debian_linux xorg-server
|
xorg-x11-server before 1.19.5 was missing length validation in XINERAMA extension allowing malicious X client to cause X server to crash or possibly execute arbitrary code.
|
CWE-20
Improper Input Validation
|
CVE-2017-12184
|
2024-11-21 12:09 |
2018-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198706
|
9.8 |
CRITICAL
Network
|
debian x.org
|
debian_linux xorg-server
|
xorg-x11-server before 1.19.5 was missing length validation in XFIXES extension allowing malicious X client to cause X server to crash or possibly execute arbitrary code.
|
CWE-20
Improper Input Validation
|
CVE-2017-12183
|
2024-11-21 12:09 |
2018-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198707
|
9.8 |
CRITICAL
Network
|
debian x.org
|
debian_linux xorg-server
|
xorg-x11-server before 1.19.5 was missing length validation in XFree86 DRI extension allowing malicious X client to cause X server to crash or possibly execute arbitrary code.
|
CWE-20
Improper Input Validation
|
CVE-2017-12182
|
2024-11-21 12:09 |
2018-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198708
|
9.8 |
CRITICAL
Network
|
debian x.org
|
debian_linux xorg-server
|
xorg-x11-server before 1.19.5 was missing length validation in XFree86 DGA extension allowing malicious X client to cause X server to crash or possibly execute arbitrary code.
|
CWE-20
Improper Input Validation
|
CVE-2017-12181
|
2024-11-21 12:09 |
2018-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198709
|
7.5 |
HIGH
Network
|
apache
|
nifi
|
A malicious host header in an incoming HTTP request could cause NiFi to load resources from an external server. The fix to sanitize host headers and compare to a controlled whitelist was applied on t…
|
CWE-20
Improper Input Validation
|
CVE-2017-12632
|
2024-11-21 12:09 |
2018-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198710
|
6.5 |
MEDIUM
Network
|
libpam4j_project redhat debian
|
libpam4j enterprise_linux debian_linux
|
It was found that libpam4j up to and including 1.8 did not properly validate user accounts when authenticating. A user with a valid password for a disabled account would be able to bypass security re…
|
CWE-20
Improper Input Validation
|
CVE-2017-12197
|
2024-11-21 12:09 |
2018-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|