[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249461

 
 

909

 
 

195508

 
 

282

 
 
Paid content will be excluded from the download.

Filter
Matches : 15145 Download | Alert*

The _dwarf_get_size_of_val function in libdwarf/dwarf_util.c in Libdwarf before 20161124 allows remote attackers to cause a denial of service by calling the dwarfdump command on a crafted file.

The jv_dump_term function in jq 1.5 allows remote attackers to cause a denial of service via a crafted JSON file.

Integer overflow in the opj_pi_create_decode function in pi.c in libopenjpeg-dev allows remote attackers to execute arbitrary code via a crafted JP2 file,which triggers an out-of-bounds read or write.

The construct function in puff.cpp in Libtorrent 1.1.0 allows remote torrent trackers to cause a denial of service via a crafted GZIP response.

Heap-based buffer overflow in the pdf_load_mesh_params function in pdf/pdf-shade.c in MuPDF allows remote attackers to cause a denial of service or execute arbitrary code via a large decode array.

Multiple integer overflows in libopenjpeg-dev, as used in PDFium in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux,allow remote attackers to cause a denial of service or possibly have unspecified other impact via crafted JPEG 2000data that is mishandled during opj_aligned_malloc calls in dwt.c and t1.c.

Cross-site scripting vulnerability in plupload.flash.swf in Plupload before 2.1.9, as used in WordPress before 4.5.2, allows remote attackers to inject arbitrary web script or HTML via a Same-Origin Method Execution attack.

ISC BIND through 9.9.9-P1, 9.10.x through 9.10.4-P1, and 9.11.x through9.11.0b1 allows primary DNS servers to cause a denial of service via a large AXFR response, and possibly allows IXFRservers to cause a denial of service via a large IXFRresponse and allows remote authenticated users to cause a denial of service via a large UPDATE message.

Cross-site scripting vulnerability in Zoneminder 1.30 and earlier allows remote attackers to inject arbitrary web script or HTML via the format parameter in a download log request to index.php.

The git_commit_message function in oid.c in libgit2-dev before 0.24.3 allow sremote attackers to cause a denial of service via acat-file command with a crafted object file.


Pages:      Start    595    596    597    598    599    600    601    602    603    604    605    606    607    608    ..   1514

© SecPod Technologies