|
222781
|
5.5 |
MEDIUM
Local
|
xfig_project debian opensuse
|
fig2dev debian_linux leap
|
Xfig fig2dev 3.2.7a has a stack-based buffer overflow in the calc_arrow function in bound.c.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-14275
|
2024-11-21 13:26 |
2019-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222782
|
5.5 |
MEDIUM
Local
|
mcpp_project opensuse
|
mcpp leap backports_sle
|
MCPP 2.7.2 has a heap-based buffer overflow in the do_msg() function in support.c.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-14274
|
2024-11-21 13:26 |
2019-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222783
|
7.1 |
HIGH
Local
|
comodo
|
firewall internet_security antivirus
|
Comodo Antivirus through 12.0.0.6870, Comodo Firewall through 12.0.0.6870, and Comodo Internet Security Premium through 12.0.0.6870, with the Comodo Container feature, are vulnerable to Sandbox Escap…
|
NVD-CWE-noinfo
|
CVE-2019-14270
|
2024-11-21 13:26 |
2019-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222784
|
6.5 |
MEDIUM
Network
|
octopus
|
octopus_deploy
|
In Octopus Deploy versions 3.0.19 to 2019.7.2, when a web request proxy is configured, an authenticated user (in certain limited circumstances) could trigger a deployment that writes the web request …
|
CWE-532
Inclusion of Sensitive Information in Log Files
|
CVE-2019-14268
|
2024-11-21 13:26 |
2019-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222785
|
8.8 |
HIGH
Network
|
opensns
|
opensns
|
OpenSNS v6.1.0 allows SQL Injection via the index.php?s=/ucenter/Config/ uid parameter because of the getNeedQueryData function in Application/Common/Model/UserModel.class.php.
|
CWE-89
SQL Injection
|
CVE-2019-14266
|
2024-11-21 13:26 |
2019-07-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222786
|
7.5 |
HIGH
Network
|
metadataextractor_project
|
metadataextractor
|
MetadataExtractor 2.1.0 allows stack consumption.
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2019-14262
|
2024-11-21 13:26 |
2019-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222787
|
5.5 |
MEDIUM
Local
|
gnu canonical opensuse
|
binutils ubuntu_linux leap
|
An issue was discovered in GNU libiberty, as distributed in GNU Binutils 2.32. simple_object_elf_match in simple-object-elf.c does not check for a zero shstrndx value, leading to an integer overflow …
|
CWE-787 CWE-190
Out-of-bounds Write Integer Overflow or Wraparound
|
CVE-2019-14250
|
2024-11-21 13:26 |
2019-07-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222788
|
6.5 |
MEDIUM
Network
|
libdwarf_project
|
libdwarf
|
dwarf_elf_load_headers.c in libdwarf before 2019-07-05 allows attackers to cause a denial of service (division by zero) via an ELF file with a zero-size section group (SHT_GROUP), as demonstrated by …
|
CWE-369
Divide By Zero
|
CVE-2019-14249
|
2024-11-21 13:26 |
2019-07-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222789
|
5.5 |
MEDIUM
Local
|
nasm
|
netwide_assembler
|
In libnasm.a in Netwide Assembler (NASM) 2.14.xx, asm/pragma.c allows a NULL pointer dereference in process_pragma, search_pragma_list, and nasm_set_limit when "%pragma limit" is mishandled.
|
CWE-476
NULL Pointer Dereference
|
CVE-2019-14248
|
2024-11-21 13:26 |
2019-07-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222790
|
5.5 |
MEDIUM
Local
|
mpg321_project
|
mpg321
|
The scan() function in mad.c in mpg321 0.3.2 allows remote attackers to trigger an out-of-bounds write via a zero bitrate in an MP3 file.
|
CWE-787
Out-of-bounds Write
|
CVE-2019-14247
|
2024-11-21 13:26 |
2019-07-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|