Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2017-03-15 CVE-2016-10163 Resource Management Errors vulnerability in Virglrenderer Project Virglrenderer 0.2.0/0.4.0/0.5.0
Memory leak in the vrend_renderer_context_create_internal function in vrend_decode.c in virglrenderer before 0.6.0 allows local guest OS users to cause a denial of service (host memory consumption) by repeatedly creating a decode context.
local
low complexity
virglrenderer-project CWE-399
6.5
2017-03-15 CVE-2016-10155 Memory Leak vulnerability in multiple products
Memory leak in hw/watchdog/wdt_i6300esb.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (host memory consumption and QEMU process crash) via a large number of device unplug operations.
local
low complexity
qemu debian CWE-401
6.0
2017-03-15 CVE-2017-6852 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Jasper Project Jasper
Heap-based buffer overflow in the jpc_dec_decodepkt function in jpc_t2dec.c in JasPer 2.0.10 allows remote attackers to have unspecified impact via a crafted image.
local
low complexity
jasper-project CWE-119
7.8
2017-03-15 CVE-2017-6851 Out-of-bounds Read vulnerability in Jasper Project Jasper
The jas_matrix_bindsub function in jas_seq.c in JasPer 2.0.10 allows remote attackers to cause a denial of service (invalid read) via a crafted image.
local
low complexity
jasper-project CWE-125
5.5
2017-03-15 CVE-2017-6850 NULL Pointer Dereference vulnerability in Jasper Project Jasper
The jp2_cdef_destroy function in jp2_cod.c in JasPer before 2.0.13 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted image.
local
low complexity
jasper-project CWE-476
5.5
2017-03-15 CVE-2017-6849 NULL Pointer Dereference vulnerability in Podofo Project Podofo 0.9.4
The PoDoFo::PdfColorGray::~PdfColorGray function in PdfColor.cpp in PoDoFo 0.9.4 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.
local
low complexity
podofo-project CWE-476
5.5
2017-03-15 CVE-2017-6848 NULL Pointer Dereference vulnerability in Podofo Project Podofo 0.9.5
The PoDoFo::PdfXObject::PdfXObject function in PdfXObject.cpp in PoDoFo 0.9.5 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.
local
low complexity
podofo-project CWE-476
5.5
2017-03-15 CVE-2017-6847 NULL Pointer Dereference vulnerability in Podofo Project Podofo 0.9.4
The PoDoFo::PdfVariant::DelayedLoad function in PdfVariant.h in PoDoFo 0.9.4 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.
local
low complexity
podofo-project CWE-476
5.5
2017-03-15 CVE-2017-6846 NULL Pointer Dereference vulnerability in Podofo Project Podofo 0.9.4
The GraphicsStack::TGraphicsStackElement::SetNonStrokingColorSpace function in graphicsstack.h in PoDoFo 0.9.4 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.
local
low complexity
podofo-project CWE-476
5.5
2017-03-15 CVE-2017-6845 NULL Pointer Dereference vulnerability in Podofo Project Podofo 0.9.4
The PoDoFo::PdfColor::operator function in PdfColor.cpp in PoDoFo 0.9.4 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted file.
local
low complexity
podofo-project CWE-476
5.5