Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 53 055

Количество 53 055

redhat логотип

CVE-2026-56410

около 1 месяца назад

xmlwf in libexpat before 2.8.2 has an integer overflow in resolveSystemId.

CVSS3: 6.9
EPSS: Низкий
redhat логотип

CVE-2026-56407

около 1 месяца назад

libexpat before 2.8.2 has an integer overflow in doProlog that is related to storeEntityValue and entity textLen.

CVSS3: 6.9
EPSS: Низкий
redhat логотип

CVE-2026-56406

около 1 месяца назад

libexpat before 2.8.2 has an integer overflow in XML_ParseBuffer because it lacked a check that was present in XML_Parse.

CVSS3: 6.9
EPSS: Низкий
redhat логотип

CVE-2026-56405

около 1 месяца назад

libexpat before 2.8.2 has an integer overflow in getAttributeId.

CVSS3: 4.9
EPSS: Низкий
redhat логотип

CVE-2026-56404

около 1 месяца назад

libexpat before 2.8.2 has an integer overflow in addBinding.

CVSS3: 6.9
EPSS: Низкий
redhat логотип

CVE-2026-56403

около 1 месяца назад

libexpat before 2.8.2 has an integer overflow in storeAtts.

CVSS3: 6.9
EPSS: Низкий
redhat логотип

CVE-2026-56392

11 дней назад

GNU coreutils unexpand is vulnerable to a heap-based buffer overflow due to an integer overflow during buffer allocation when processing large tab stop (-t) values. The multiplication used to calculate the allocation size can wrap around, resulting in an undersized buffer. When processing crafted input, subsequent writes exceed the allocated memory, leading to an out‑of‑bounds heap write. When running GNU coreutils unexpand with attacker-provided large tab stop (-t) arguments, this behavior leads to a crash and potentially achieve a heap write primitive depending on memory layout. This issue has been fixed in the commit b60a159fdc5bfcf9988d3a4cb6f53abe8ad5d35d

CVSS3: 4.4
EPSS: Низкий
redhat логотип

CVE-2026-56391

11 дней назад

GNU coreutils uniq is vulnerable to an out‑of‑bounds read due to incorrect handling of multibyte input when the -w (--check-chars) option is used. The find_field() function miscalculates the byte length of characters by repeatedly processing a fixed pointer instead of advancing through the input, resulting in an inflated length value. This incorrect length is later used in a memcmp operation, causing reads beyond the allocated buffer when processing crafted multibyte input. When running GNU coreutils uniq with attacker-provided arguments, this behavior leads to a crash and potential adjacent heap memory exposure. This issue has been fixed in the commit d64e35a8a4c0e4608321433e0d84d917e4e36371.

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2026-56390

6 дней назад

A flaw was found in GNU Bison. When processing attacker-supplied grammar, the software improperly handles grammar-defined output paths. This allows an attacker to use directives such as %output and %header to specify arbitrary file paths. Consequently, generated files can be directed to any writable location on the filesystem, potentially overwriting existing files and leading to data integrity issues.

CVSS3: 5.6
EPSS: Низкий
redhat логотип

CVE-2026-56379

около 1 месяца назад

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection vulnerability in the SVG decoder that allows attackers to inject arbitrary MVG drawing commands. Attackers can craft malicious SVG files with injected Magick Vector Graphics commands that execute during rendering.

CVSS3: 8.1
EPSS: Низкий
redhat логотип

CVE-2026-56378

около 1 месяца назад

ImageMagick before 7.1.2-15 (and 6.x before 6.9.13-40) contains a heap out-of-bounds read in the PCD coder's DecodeImage loop. A crafted PCD file can trigger a one-byte heap out-of-bounds read during image decoding, resulting in denial of service and potential disclosure of an adjacent heap byte.

CVSS3: 4.8
EPSS: Низкий
redhat логотип

CVE-2026-56377

около 1 месяца назад

ImageMagick before 7.1.2-24 contains an incorrect policy check that allows attackers to create or truncate files disallowed by security policies. Remote attackers can bypass path policy restrictions in sandboxed conversion services to write arbitrary files outside intended boundaries.

CVSS3: 3.3
EPSS: Низкий
redhat логотип

CVE-2026-56376

около 1 месяца назад

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a heap use-after-free in the meta coder: when memory allocation fails, a single byte is written to a stale pointer. Remote attackers can trigger it by processing specially crafted image files, causing a denial of service.

CVSS3: 3.7
EPSS: Низкий
redhat логотип

CVE-2026-56375

20 дней назад

ImageMagick through 7.1.2-18 contains a memory leak vulnerability in the ASHLAR coder when an action fails. Attackers can trigger failed actions to exhaust memory resources and cause denial of service.

CVSS3: 3.3
EPSS: Низкий
redhat логотип

CVE-2026-56374

27 дней назад

ImageMagick before 7.1.2-19 contains a heap buffer overflow vulnerability in the FTXT encoder due to missing boundary checks when parsing ftxt:format. Remote attackers can trigger an out of bounds read by crafting malicious FTXT image files to cause denial of service or information disclosure.

CVSS3: 3.3
EPSS: Низкий
redhat логотип

CVE-2026-56373

25 дней назад

ImageMagick before 7.1.2-15 contains a use-after-free vulnerability in the PDB decoder that uses a stale pointer when memory allocation fails. Attackers can trigger this vulnerability by processing malicious PDB files to cause crashes or write a single zero byte to freed memory.

CVSS3: 5.9
EPSS: Низкий
redhat логотип

CVE-2026-56372

24 дня назад

ImageMagick before 7.1.2-19 contains a heap buffer overflow vulnerability in the magnify operation that allows attackers to read out of bounds memory. An unrecognized magnify:method value triggers an out of bounds read, potentially exposing sensitive information or causing denial of service.

CVSS3: 6.1
EPSS: Низкий
redhat логотип

CVE-2026-56371

около 1 месяца назад

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a memory leak in coders/txt.c when processing TXT files with texture attributes: the texture object allocated via ReadImage is not released when GetTypeMetrics fails, leaking memory each time a crafted TXT file with a texture attribute is processed.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2026-56370

около 1 месяца назад

ImageMagick before 7.1.2-19 contains an out-of-bounds access vulnerability in ConnectedComponentsImage() when processing connected-components artifacts with invalid indices. Attackers can trigger access violations by specifying malformed connected-components definitions via CLI, causing denial of service or potential code execution.

CVSS3: 3.3
EPSS: Низкий
redhat логотип

CVE-2026-56369

около 1 месяца назад

ImageMagick before 7.1.2-22 contains an information disclosure vulnerability in the PasskeyEncipherImage method due to AES-CTR nonce reuse. Attackers can exploit nonce reuse in the cipher implementation to recover plaintext information from encrypted images.

CVSS3: 3.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2026-56410

xmlwf in libexpat before 2.8.2 has an integer overflow in resolveSystemId.

CVSS3: 6.9
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2026-56407

libexpat before 2.8.2 has an integer overflow in doProlog that is related to storeEntityValue and entity textLen.

CVSS3: 6.9
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2026-56406

libexpat before 2.8.2 has an integer overflow in XML_ParseBuffer because it lacked a check that was present in XML_Parse.

CVSS3: 6.9
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2026-56405

libexpat before 2.8.2 has an integer overflow in getAttributeId.

CVSS3: 4.9
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2026-56404

libexpat before 2.8.2 has an integer overflow in addBinding.

CVSS3: 6.9
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2026-56403

libexpat before 2.8.2 has an integer overflow in storeAtts.

CVSS3: 6.9
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2026-56392

GNU coreutils unexpand is vulnerable to a heap-based buffer overflow due to an integer overflow during buffer allocation when processing large tab stop (-t) values. The multiplication used to calculate the allocation size can wrap around, resulting in an undersized buffer. When processing crafted input, subsequent writes exceed the allocated memory, leading to an out‑of‑bounds heap write. When running GNU coreutils unexpand with attacker-provided large tab stop (-t) arguments, this behavior leads to a crash and potentially achieve a heap write primitive depending on memory layout. This issue has been fixed in the commit b60a159fdc5bfcf9988d3a4cb6f53abe8ad5d35d

CVSS3: 4.4
0%
Низкий
11 дней назад
redhat логотип
CVE-2026-56391

GNU coreutils uniq is vulnerable to an out‑of‑bounds read due to incorrect handling of multibyte input when the -w (--check-chars) option is used. The find_field() function miscalculates the byte length of characters by repeatedly processing a fixed pointer instead of advancing through the input, resulting in an inflated length value. This incorrect length is later used in a memcmp operation, causing reads beyond the allocated buffer when processing crafted multibyte input. When running GNU coreutils uniq with attacker-provided arguments, this behavior leads to a crash and potential adjacent heap memory exposure. This issue has been fixed in the commit d64e35a8a4c0e4608321433e0d84d917e4e36371.

CVSS3: 6.1
0%
Низкий
11 дней назад
redhat логотип
CVE-2026-56390

A flaw was found in GNU Bison. When processing attacker-supplied grammar, the software improperly handles grammar-defined output paths. This allows an attacker to use directives such as %output and %header to specify arbitrary file paths. Consequently, generated files can be directed to any writable location on the filesystem, potentially overwriting existing files and leading to data integrity issues.

CVSS3: 5.6
0%
Низкий
6 дней назад
redhat логотип
CVE-2026-56379

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a command injection vulnerability in the SVG decoder that allows attackers to inject arbitrary MVG drawing commands. Attackers can craft malicious SVG files with injected Magick Vector Graphics commands that execute during rendering.

CVSS3: 8.1
1%
Низкий
около 1 месяца назад
redhat логотип
CVE-2026-56378

ImageMagick before 7.1.2-15 (and 6.x before 6.9.13-40) contains a heap out-of-bounds read in the PCD coder's DecodeImage loop. A crafted PCD file can trigger a one-byte heap out-of-bounds read during image decoding, resulting in denial of service and potential disclosure of an adjacent heap byte.

CVSS3: 4.8
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2026-56377

ImageMagick before 7.1.2-24 contains an incorrect policy check that allows attackers to create or truncate files disallowed by security policies. Remote attackers can bypass path policy restrictions in sandboxed conversion services to write arbitrary files outside intended boundaries.

CVSS3: 3.3
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2026-56376

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a heap use-after-free in the meta coder: when memory allocation fails, a single byte is written to a stale pointer. Remote attackers can trigger it by processing specially crafted image files, causing a denial of service.

CVSS3: 3.7
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2026-56375

ImageMagick through 7.1.2-18 contains a memory leak vulnerability in the ASHLAR coder when an action fails. Attackers can trigger failed actions to exhaust memory resources and cause denial of service.

CVSS3: 3.3
0%
Низкий
20 дней назад
redhat логотип
CVE-2026-56374

ImageMagick before 7.1.2-19 contains a heap buffer overflow vulnerability in the FTXT encoder due to missing boundary checks when parsing ftxt:format. Remote attackers can trigger an out of bounds read by crafting malicious FTXT image files to cause denial of service or information disclosure.

CVSS3: 3.3
0%
Низкий
27 дней назад
redhat логотип
CVE-2026-56373

ImageMagick before 7.1.2-15 contains a use-after-free vulnerability in the PDB decoder that uses a stale pointer when memory allocation fails. Attackers can trigger this vulnerability by processing malicious PDB files to cause crashes or write a single zero byte to freed memory.

CVSS3: 5.9
0%
Низкий
25 дней назад
redhat логотип
CVE-2026-56372

ImageMagick before 7.1.2-19 contains a heap buffer overflow vulnerability in the magnify operation that allows attackers to read out of bounds memory. An unrecognized magnify:method value triggers an out of bounds read, potentially exposing sensitive information or causing denial of service.

CVSS3: 6.1
0%
Низкий
24 дня назад
redhat логотип
CVE-2026-56371

ImageMagick before 7.1.2-15 and 6.9.13-40 contains a memory leak in coders/txt.c when processing TXT files with texture attributes: the texture object allocated via ReadImage is not released when GetTypeMetrics fails, leaking memory each time a crafted TXT file with a texture attribute is processed.

CVSS3: 5.3
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2026-56370

ImageMagick before 7.1.2-19 contains an out-of-bounds access vulnerability in ConnectedComponentsImage() when processing connected-components artifacts with invalid indices. Attackers can trigger access violations by specifying malformed connected-components definitions via CLI, causing denial of service or potential code execution.

CVSS3: 3.3
0%
Низкий
около 1 месяца назад
redhat логотип
CVE-2026-56369

ImageMagick before 7.1.2-22 contains an information disclosure vulnerability in the PasskeyEncipherImage method due to AES-CTR nonce reuse. Attackers can exploit nonce reuse in the cipher implementation to recover plaintext information from encrypted images.

CVSS3: 3.7
0%
Низкий
около 1 месяца назад

Уязвимостей на страницу