Vulnerabilities > Reachable Assertion

DATE CVE VULNERABILITY TITLE RISK
2017-08-09 CVE-2017-11368 Reachable Assertion vulnerability in multiple products
In MIT Kerberos 5 (aka krb5) 1.7 and later, an authenticated attacker can cause a KDC assertion failure by sending invalid S4U2Self or S4U2Proxy requests.
network
low complexity
fedoraproject mit CWE-617
6.5
2017-08-07 CVE-2017-12670 Reachable Assertion vulnerability in Imagemagick 7.0.63
In ImageMagick 7.0.6-3, missing validation was found in coders/mat.c, leading to an assertion failure in the function DestroyImage in MagickCore/image.c, which allows attackers to cause a denial of service.
network
low complexity
imagemagick CWE-617
6.5
2017-08-04 CVE-2017-12434 Reachable Assertion vulnerability in Imagemagick 7.0.61
In ImageMagick 7.0.6-1, a missing NULL check vulnerability was found in the function ReadMATImage in coders/mat.c, which allows attackers to cause a denial of service (assertion failure) in DestroyImageInfo in image.c.
network
low complexity
imagemagick CWE-617
6.5
2017-07-30 CVE-2017-11692 Reachable Assertion vulnerability in Yaml-Cpp Project Yaml-Cpp
The function "Token& Scanner::peek" in scanner.cpp in yaml-cpp 0.5.3 and earlier allows remote attackers to cause a denial of service (assertion failure and application exit) via a '!2' string.
network
low complexity
yaml-cpp-project CWE-617
7.5
2017-07-27 CVE-2017-11683 Reachable Assertion vulnerability in multiple products
There is a reachable assertion in the Internal::TiffReader::visitDirectory function in tiffvisitor.cpp of Exiv2 0.26 that will lead to a remote denial of service attack via crafted input.
network
low complexity
exiv2 canonical debian CWE-617
6.5
2017-07-23 CVE-2017-11524 Reachable Assertion vulnerability in Imagemagick
The WriteBlob function in MagickCore/blob.c in ImageMagick before 6.9.8-10 and 7.x before 7.6.0-0 allows remote attackers to cause a denial of service (assertion failure and application exit) via a crafted file.
network
low complexity
imagemagick CWE-617
6.5
2017-06-27 CVE-2017-7508 Reachable Assertion vulnerability in Openvpn
OpenVPN versions before 2.4.3 and before 2.3.17 are vulnerable to remote denial-of-service when receiving malformed IPv6 packet.
network
low complexity
openvpn CWE-617
7.5
2017-06-09 CVE-2017-0376 Reachable Assertion vulnerability in multiple products
The hidden-service feature in Tor before 0.3.0.8 allows a denial of service (assertion failure and daemon exit) in the connection_edge_process_relay_cell function via a BEGIN_DIR cell on a rendezvous circuit.
network
low complexity
torproject debian CWE-617
7.5
2017-06-09 CVE-2017-0375 Reachable Assertion vulnerability in Torproject TOR
The hidden-service feature in Tor before 0.3.0.8 allows a denial of service (assertion failure and daemon exit) in the relay_send_end_cell_from_edge_ function via a malformed BEGIN cell.
network
low complexity
torproject CWE-617
7.5
2017-06-07 CVE-2017-9501 Reachable Assertion vulnerability in Imagemagick 7.0.57
In ImageMagick 7.0.5-7 Q16, an assertion failure was found in the function LockSemaphoreInfo, which allows attackers to cause a denial of service via a crafted file.
network
low complexity
imagemagick CWE-617
6.5