Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 54 399

Количество 54 399

redhat логотип

CVE-2016-9429

почти 10 лет назад

An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Buffer overflow in the formUpdateBuffer function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.

CVSS3: 4.3
EPSS: Низкий
redhat логотип

CVE-2016-9428

около 10 лет назад

An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in the addMultirowsForm function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.

CVSS3: 4.3
EPSS: Низкий
redhat логотип

CVE-2016-9427

почти 10 лет назад

Integer overflow vulnerability in bdwgc before 2016-09-27 allows attackers to cause client of bdwgc denial of service (heap buffer overflow crash) and possibly execute arbitrary code via huge allocation.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2016-9426

около 10 лет назад

An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Integer overflow vulnerability in the renderTable function in w3m allows remote attackers to cause a denial of service (OOM) and possibly execute arbitrary code due to bdwgc's bug (CVE-2016-9427) via a crafted HTML page.

CVSS3: 4.3
EPSS: Низкий
redhat логотип

CVE-2016-9425

около 10 лет назад

An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in the addMultirowsForm function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.

CVSS3: 4.3
EPSS: Низкий
redhat логотип

CVE-2016-9424

около 10 лет назад

An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m doesn't properly validate the value of tag attribute, which allows remote attackers to cause a denial of service (heap buffer overflow crash) and possibly execute arbitrary code via a crafted HTML page.

CVSS3: 4.3
EPSS: Низкий
redhat логотип

CVE-2016-9423

около 10 лет назад

An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.

CVSS3: 4.3
EPSS: Низкий
redhat логотип

CVE-2016-9422

около 10 лет назад

An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. The feed_table_tag function in w3m doesn't properly validate the value of table span, which allows remote attackers to cause a denial of service (stack and/or heap buffer overflow) and possibly execute arbitrary code via a crafted HTML page.

CVSS3: 4.3
EPSS: Низкий
redhat логотип

CVE-2016-9401

почти 10 лет назад

popd in bash might allow local users to bypass the restricted shell and cause a use-after-free via a crafted address.

CVSS3: 3.3
EPSS: Низкий
redhat логотип

CVE-2016-9399

почти 10 лет назад

The calcstepsizes function in jpc_dec.c in JasPer 1.900.22 allows remote attackers to cause a denial of service (assertion failure) via unspecified vectors.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2016-9398

почти 10 лет назад

The jpc_floorlog2 function in jpc_math.c in JasPer before 1.900.17 allows remote attackers to cause a denial of service (assertion failure) via unspecified vectors.

CVSS3: 3.3
EPSS: Низкий
redhat логотип

CVE-2016-9397

почти 10 лет назад

The jpc_dequantize function in jpc_dec.c in JasPer 1.900.13 allows remote attackers to cause a denial of service (assertion failure) via unspecified vectors.

CVSS3: 3.3
EPSS: Низкий
redhat логотип

CVE-2016-9396

почти 10 лет назад

The JPC_NOMINALGAIN function in jpc/jpc_t1cod.c in JasPer through 2.0.12 allows remote attackers to cause a denial of service (JPC_COX_RFT assertion failure) via unspecified vectors.

CVSS3: 3.3
EPSS: Низкий
redhat логотип

CVE-2016-9395

почти 10 лет назад

The jas_seq2d_create function in jas_seq.c in JasPer before 1.900.25 allows remote attackers to cause a denial of service (assertion failure) via a crafted file.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2016-9394

почти 10 лет назад

The jas_seq2d_create function in jas_seq.c in JasPer before 1.900.17 allows remote attackers to cause a denial of service (assertion failure) via a crafted file.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2016-9393

почти 10 лет назад

The jpc_pi_nextrpcl function in jpc_t2cod.c in JasPer before 1.900.17 allows remote attackers to cause a denial of service (assertion failure) via a crafted file.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2016-9392

почти 10 лет назад

The calcstepsizes function in jpc_dec.c in JasPer before 1.900.17 allows remote attackers to cause a denial of service (assertion failure) via a crafted file.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2016-9391

почти 10 лет назад

The jpc_bitstream_getbits function in jpc_bs.c in JasPer before 2.0.10 allows remote attackers to cause a denial of service (assertion failure) via a very large integer.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2016-9390

почти 10 лет назад

The jas_seq2d_create function in jas_seq.c in JasPer before 1.900.14 allows remote attackers to cause a denial of service (assertion failure) via a crafted image file.

CVSS3: 5.5
EPSS: Низкий
redhat логотип

CVE-2016-9389

почти 10 лет назад

The jpc_irct and jpc_iict functions in jpc_mct.c in JasPer before 1.900.14 allow remote attackers to cause a denial of service (assertion failure).

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2016-9429

An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Buffer overflow in the formUpdateBuffer function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.

CVSS3: 4.3
4%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-9428

An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in the addMultirowsForm function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.

CVSS3: 4.3
3%
Низкий
около 10 лет назад
redhat логотип
CVE-2016-9427

Integer overflow vulnerability in bdwgc before 2016-09-27 allows attackers to cause client of bdwgc denial of service (heap buffer overflow crash) and possibly execute arbitrary code via huge allocation.

CVSS3: 7.5
4%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-9426

An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Integer overflow vulnerability in the renderTable function in w3m allows remote attackers to cause a denial of service (OOM) and possibly execute arbitrary code due to bdwgc's bug (CVE-2016-9427) via a crafted HTML page.

CVSS3: 4.3
3%
Низкий
около 10 лет назад
redhat логотип
CVE-2016-9425

An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in the addMultirowsForm function in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.

CVSS3: 4.3
3%
Низкий
около 10 лет назад
redhat логотип
CVE-2016-9424

An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. w3m doesn't properly validate the value of tag attribute, which allows remote attackers to cause a denial of service (heap buffer overflow crash) and possibly execute arbitrary code via a crafted HTML page.

CVSS3: 4.3
3%
Низкий
около 10 лет назад
redhat логотип
CVE-2016-9423

An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. Heap-based buffer overflow in w3m allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted HTML page.

CVSS3: 4.3
3%
Низкий
около 10 лет назад
redhat логотип
CVE-2016-9422

An issue was discovered in the Tatsuya Kinoshita w3m fork before 0.5.3-31. The feed_table_tag function in w3m doesn't properly validate the value of table span, which allows remote attackers to cause a denial of service (stack and/or heap buffer overflow) and possibly execute arbitrary code via a crafted HTML page.

CVSS3: 4.3
3%
Низкий
около 10 лет назад
redhat логотип
CVE-2016-9401

popd in bash might allow local users to bypass the restricted shell and cause a use-after-free via a crafted address.

CVSS3: 3.3
0%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-9399

The calcstepsizes function in jpc_dec.c in JasPer 1.900.22 allows remote attackers to cause a denial of service (assertion failure) via unspecified vectors.

CVSS3: 5.5
4%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-9398

The jpc_floorlog2 function in jpc_math.c in JasPer before 1.900.17 allows remote attackers to cause a denial of service (assertion failure) via unspecified vectors.

CVSS3: 3.3
6%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-9397

The jpc_dequantize function in jpc_dec.c in JasPer 1.900.13 allows remote attackers to cause a denial of service (assertion failure) via unspecified vectors.

CVSS3: 3.3
4%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-9396

The JPC_NOMINALGAIN function in jpc/jpc_t1cod.c in JasPer through 2.0.12 allows remote attackers to cause a denial of service (JPC_COX_RFT assertion failure) via unspecified vectors.

CVSS3: 3.3
6%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-9395

The jas_seq2d_create function in jas_seq.c in JasPer before 1.900.25 allows remote attackers to cause a denial of service (assertion failure) via a crafted file.

CVSS3: 5.5
1%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-9394

The jas_seq2d_create function in jas_seq.c in JasPer before 1.900.17 allows remote attackers to cause a denial of service (assertion failure) via a crafted file.

CVSS3: 5.5
2%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-9393

The jpc_pi_nextrpcl function in jpc_t2cod.c in JasPer before 1.900.17 allows remote attackers to cause a denial of service (assertion failure) via a crafted file.

CVSS3: 5.5
2%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-9392

The calcstepsizes function in jpc_dec.c in JasPer before 1.900.17 allows remote attackers to cause a denial of service (assertion failure) via a crafted file.

CVSS3: 5.5
2%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-9391

The jpc_bitstream_getbits function in jpc_bs.c in JasPer before 2.0.10 allows remote attackers to cause a denial of service (assertion failure) via a very large integer.

CVSS3: 5.5
4%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-9390

The jas_seq2d_create function in jas_seq.c in JasPer before 1.900.14 allows remote attackers to cause a denial of service (assertion failure) via a crafted image file.

CVSS3: 5.5
2%
Низкий
почти 10 лет назад
redhat логотип
CVE-2016-9389

The jpc_irct and jpc_iict functions in jpc_mct.c in JasPer before 1.900.14 allow remote attackers to cause a denial of service (assertion failure).

CVSS3: 5.5
4%
Низкий
почти 10 лет назад

Уязвимостей на страницу