|
198881
|
7.5 |
HIGH
Network
|
opencv
|
opencv
|
OpenCV (Open Source Computer Vision Library) through 3.3 has a denial of service (CPU consumption) issue, as demonstrated by the 11-opencv-dos-cpu-exhaust test case.
|
NVD-CWE-noinfo
|
CVE-2017-12600
|
2024-11-21 12:09 |
2017-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198882
|
8.8 |
HIGH
Network
|
opencv debian
|
opencv debian_linux
|
OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds read error in the function icvCvt_BGRA2BGR_8u_C4C3R when reading an image file by using cv::imread.
|
CWE-125
Out-of-bounds Read
|
CVE-2017-12599
|
2024-11-21 12:09 |
2017-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198883
|
8.8 |
HIGH
Network
|
opencv debian
|
opencv debian_linux
|
OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds read error in the cv::RBaseStream::readBlock function in modules/imgcodecs/src/bitstrm.cpp when reading an image file by …
|
CWE-125
Out-of-bounds Read
|
CVE-2017-12598
|
2024-11-21 12:09 |
2017-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198884
|
8.8 |
HIGH
Network
|
opencv debian
|
opencv debian_linux
|
OpenCV (Open Source Computer Vision Library) through 3.3 has an out-of-bounds write error in the function FillColorRow1 in utils.cpp when reading an image file by using cv::imread.
|
CWE-787
Out-of-bounds Write
|
CVE-2017-12597
|
2024-11-21 12:09 |
2017-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198885
|
7.8 |
HIGH
Local
|
openexr
|
openexr
|
In OpenEXR 2.2.0, a crafted image causes a heap-based buffer over-read in the hufDecode function in IlmImf/ImfHuf.cpp during exrmaketiled execution; it may result in denial of service or possibly uns…
|
CWE-125
Out-of-bounds Read
|
CVE-2017-12596
|
2024-11-21 12:09 |
2017-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198886
|
9.8 |
CRITICAL
Network
|
rsyslog
|
rsyslog
|
The zmq3 input and output modules in rsyslog before 8.28.0 interpreted description fields as format strings, possibly allowing a format string attack with unspecified impact.
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2017-12588
|
2024-11-21 12:09 |
2017-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198887
|
8.8 |
HIGH
Network
|
imagemagick
|
imagemagick
|
ImageMagick 7.0.6-1 has a large loop vulnerability in the ReadPWPImage function in coders\pwp.c.
|
CWE-834
Excessive Iteration
|
CVE-2017-12587
|
2024-11-21 12:09 |
2017-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198888
|
7.8 |
HIGH
Local
|
sandboxie
|
sandboxie_installer
|
Sandboxie installer 5071703 has a DLL Hijacking or Unsafe DLL Loading Vulnerability via a Trojan horse dwmapi.dll or profapi.dll file in an AppData\Local\Temp directory.
|
CWE-426
Untrusted Search Path
|
CVE-2017-12480
|
2024-11-21 12:09 |
2017-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198889
|
6.5 |
MEDIUM
Network
|
slims
|
akasia
|
SLiMS 8 Akasia through 8.3.1 has an arbitrary file reading issue because of directory traversal in the url parameter to admin/help.php. It can be exploited by remote authenticated librarian users.
|
CWE-22
Path Traversal
|
CVE-2017-12586
|
2024-11-21 12:09 |
2017-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
198890
|
8.8 |
HIGH
Network
|
slims
|
akasia
|
SLiMS 8 Akasia through 8.3.1 has SQL injection in admin/AJAX_lookup_handler.php (tableName and tableFields parameters), admin/AJAX_check_id.php, and admin/AJAX_vocabolary_control.php. It can be explo…
|
CWE-89
SQL Injection
|
CVE-2017-12585
|
2024-11-21 12:09 |
2017-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|