|
211171
|
9.1 |
CRITICAL
Network
|
gnu opensuse
|
libredwg leap backports_sle
|
An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is an out-of-bounds read in the function dwg_dxf_BLOCK_CONTROL at dwg.spec.
|
CWE-125
Out-of-bounds Read
|
CVE-2019-9775
|
2024-11-21 13:52 |
2019-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211172
|
9.1 |
CRITICAL
Network
|
gnu opensuse
|
libredwg leap backports_sle
|
An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is an out-of-bounds read in the function bit_read_B at bits.c.
|
CWE-125
Out-of-bounds Read
|
CVE-2019-9774
|
2024-11-21 13:52 |
2019-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211173
|
7.5 |
HIGH
Network
|
gnu opensuse
|
libredwg leap backports_sle
|
An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a heap-based buffer overflow in the function dwg_decode_eed_data at decode.c for the z dimension.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-9773
|
2024-11-21 13:52 |
2019-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211174
|
7.5 |
HIGH
Network
|
gnu opensuse
|
libredwg leap backports_sle
|
An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a NULL pointer dereference in the function dwg_dxf_LEADER at dwg.spec.
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-9772
|
2024-11-21 13:52 |
2019-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211175
|
7.5 |
HIGH
Network
|
gnu opensuse
|
libredwg leap backports_sle
|
An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a NULL pointer dereference in the function bit_convert_TU at bits.c.
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-9771
|
2024-11-21 13:52 |
2019-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211176
|
7.5 |
HIGH
Network
|
gnu opensuse
|
libredwg leap backports_sle
|
An issue was discovered in GNU LibreDWG 0.7 and 0.7.1645. There is a heap-based buffer overflow in the function dwg_decode_eed_data at decode.c for the y dimension.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-9770
|
2024-11-21 13:52 |
2019-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211177
|
8.8 |
HIGH
Network
|
kartatopia
|
piluscart
|
PilusCart 1.4.1 is vulnerable to index.php?module=users&action=newUser CSRF, leading to the addition of a new user as administrator.
|
CWE-352
Origin Validation Error
|
CVE-2019-9769
|
2024-11-21 13:52 |
2019-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211178
|
7.5 |
HIGH
Network
|
thinkst
|
canarytokens
|
Thinkst Canarytokens through commit hash 4e89ee0 (2019-03-01) relies on limited variation in size, metadata, and timestamp, which makes it easier for attackers to estimate whether a Word document con…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2019-9768
|
2024-11-21 13:52 |
2019-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211179
|
7.8 |
HIGH
Local
|
cleanersoft
|
free_mp3_cd_ripper
|
Stack-based buffer overflow in Free MP3 CD Ripper 2.6, when converting a file, allows user-assisted remote attackers to execute arbitrary code via a crafted .wma file.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-9767
|
2024-11-21 13:52 |
2019-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
211180
|
7.8 |
HIGH
Local
|
cleanersoft
|
free_mp3_cd_ripper
|
Stack-based buffer overflow in Free MP3 CD Ripper 2.6, when converting a file, allows user-assisted remote attackers to execute arbitrary code via a crafted .mp3 file.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-9766
|
2024-11-21 13:52 |
2019-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|