Vulnerability & Exploit Database

Displaying entries 1 - 10 of 190 in total

Results for: CVE-2018-1296 Back to search

Huawei EulerOS: CVE-2018-8781: kernel security update Vulnerability

  • Severity: 7
  • Published: April 23, 2018

The udl_fb_mmap function in drivers/gpu/drm/udl/udl_fb.c at the Linux kernel version 3.4 and up to and including 4.15 has an integer-overflow vulnerability allowing local users with access to the udldrmfb driver to obtain full read and write permissions on kernel physical pages, resulting in a code execution in kernel space.

SUSE: CVE-2018-10120: SUSE Linux Security Advisory Vulnerability

  • Severity: 7
  • Published: April 16, 2018

The SwCTBWrapper::Read function in sw/source/filter/ww8/ww8toolbar.cxx in LibreOffice before 5.4.6.1 and 6.x before 6.0.2.1 does not validate a customizations index, which allows remote attackers to cause a denial of service (heap-based buffer overflow with write access) or possibly have unspecified other impact via a crafted document th...

SUSE: CVE-2018-10119: SUSE Linux Security Advisory Vulnerability

  • Severity: 7
  • Published: April 16, 2018

sot/source/sdstor/stgstrms.cxx in LibreOffice before 5.4.5.1 and 6.x before 6.0.1.1 uses an incorrect integer data type in the StgSmallStrm class, which allows remote attackers to cause a denial of service (use-after-free with write access) or possibly have unspecified other impact via a crafted document that uses the structured storage ...

Ubuntu: USN-3755-1 (CVE-2018-5711): GD vulnerabilities Vulnerability

  • Severity: 4
  • Published: January 16, 2018

gd_gif_in.c in the GD Graphics Library (aka libgd), as used in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1, has an integer signedness error that leads to an infinite loop via a crafted GIF file, as demonstrated by a call to the imagecreatefromgif or imagecreatefromstring PHP function. This is relat...

SUSE: CVE-2018-5712: SUSE Linux Security Advisory Vulnerability

  • Severity: 4
  • Published: January 16, 2018

An issue was discovered in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1. There is Reflected XSS on the PHAR 404 error page via the URI of a request for a .phar file.

SUSE: CVE-2018-5711: SUSE Linux Security Advisory Vulnerability

  • Severity: 4
  • Published: January 16, 2018

gd_gif_in.c in the GD Graphics Library (aka libgd), as used in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1, has an integer signedness error that leads to an infinite loop via a crafted GIF file, as demonstrated by a call to the imagecreatefromgif or imagecreatefromstring PHP function. This is relat...

PHP Vulnerability: CVE-2018-5712 Vulnerability

  • Severity: 4
  • Published: January 16, 2018

An issue was discovered in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1. There is Reflected XSS on the PHAR 404 error page via the URI of a request for a .phar file.

PHP Vulnerability: CVE-2018-5711 Vulnerability

  • Severity: 4
  • Published: January 16, 2018

gd_gif_in.c in the GD Graphics Library (aka libgd), as used in PHP before 5.6.33, 7.0.x before 7.0.27, 7.1.x before 7.1.13, and 7.2.x before 7.2.1, has an integer signedness error that leads to an infinite loop via a crafted GIF file, as demonstrated by a call to the imagecreatefromgif or imagecreatefromstring PHP function. This is relat...