Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In July 2019
In the Linux kernel before 2.6.20, there is an off-by-one bug in net/netlabel/netlabel_cipso_v4.c where it is possible to overflow the doi_def->tags[] array.
CVSS Score
9.8
EPSS Score
0.008
Published
2019-07-27
An Integer overflow in the getElfSections function in p_vmlinx.cpp in UPX 3.95 allows remote attackers to cause a denial of service (crash) via a skewed offset larger than the size of the PE section in a UPX packed executable, which triggers an allocation of excessive memory.
CVSS Score
5.5
EPSS Score
0.003
Published
2019-07-27
canUnpack in p_vmlinx.cpp in UPX 3.95 allows remote attackers to cause a denial of service (SEGV or buffer overflow, and application crash) or possibly have unspecified other impact via a crafted UPX packed file.
CVSS Score
7.8
EPSS Score
0.005
Published
2019-07-27
An issue was discovered in Xpdf 4.01.01. There is an Integer overflow in the function JBIG2Bitmap::combine at JBIG2Stream.cc for the "one byte per line" case.
CVSS Score
7.8
EPSS Score
0.002
Published
2019-07-27
An issue was discovered in Xpdf 4.01.01. There is an integer overflow in the function JBIG2Bitmap::combine at JBIG2Stream.cc for the "multiple bytes per line" case.
CVSS Score
5.5
EPSS Score
0.002
Published
2019-07-27
An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA==6 case 2.
CVSS Score
5.5
EPSS Score
0.002
Published
2019-07-27
An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA==6 case 3.
CVSS Score
5.5
EPSS Score
0.002
Published
2019-07-27
An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA!=6 case 1.
CVSS Score
5.5
EPSS Score
0.002
Published
2019-07-27
An issue was discovered in Xpdf 4.01.01. There is an out of bounds read in the function GfxPatchMeshShading::parse at GfxState.cc for typeA!=6 case 2.
CVSS Score
5.5
EPSS Score
0.002
Published
2019-07-27
An issue was discovered in Xpdf 4.01.01. There is a use-after-free in the function JPXStream::fillReadBuf at JPXStream.cc, due to an out of bounds read.
CVSS Score
5.5
EPSS Score
0.002
Published
2019-07-27


Contact Us

Shodan ® - All rights reserved