Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2017-08-04 CVE-2017-12454 Out-of-bounds Read vulnerability in GNU Binutils
The _bfd_vms_slurp_egsd function in bfd/vms-alpha.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an arbitrary memory read via a crafted vms alpha file.
local
low complexity
gnu CWE-125
7.8
2017-08-04 CVE-2017-12453 Out-of-bounds Read vulnerability in GNU Binutils
The _bfd_vms_slurp_eeom function in libbfd.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap read via a crafted vms alpha file.
local
low complexity
gnu CWE-125
7.8
2017-08-04 CVE-2017-12452 Out-of-bounds Read vulnerability in GNU Binutils
The bfd_mach_o_i386_canonicalize_one_reloc function in bfd/mach-o-i386.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap read via a crafted mach-o file.
local
low complexity
gnu CWE-125
7.8
2017-08-04 CVE-2017-12451 Out-of-bounds Read vulnerability in GNU Binutils
The _bfd_xcoff_read_ar_hdr function in bfd/coff-rs6000.c and bfd/coff64-rs6000.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds stack read via a crafted COFF image file.
local
low complexity
gnu CWE-125
7.8
2017-08-04 CVE-2017-12450 Out-of-bounds Write vulnerability in GNU Binutils
The alpha_vms_object_p function in bfd/vms-alpha.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap write and possibly achieve code execution via a crafted vms alpha file.
local
low complexity
gnu CWE-787
7.8
2017-08-04 CVE-2017-12449 Out-of-bounds Read vulnerability in GNU Binutils
The _bfd_vms_save_sized_string function in vms-misc.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap read via a crafted vms file.
local
low complexity
gnu CWE-125
7.8
2017-08-04 CVE-2017-12448 Use After Free vulnerability in GNU Binutils
The bfd_cache_close function in bfd/cache.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause a heap use after free and possibly achieve code execution via a crafted nested archive file.
local
low complexity
gnu CWE-416
7.8
2017-08-04 CVE-2017-10949 Path Traversal vulnerability in Dell Storage Manager 2016 R2.1
Directory Traversal in Dell Storage Manager 2016 R2.1 causes Information Disclosure when the doGet method of the EmWebsiteServlet class doesn't properly validate user provided path before using it in file operations.
network
low complexity
dell CWE-22
7.5
2017-08-04 CVE-2017-11657 Untrusted Search Path vulnerability in Dashlane
Dashlane might allow local users to gain privileges by placing a Trojan horse WINHTTP.dll in the %APPDATA%\Dashlane directory.
local
low complexity
dashlane CWE-426
7.3
2017-08-04 CVE-2017-12435 Allocation of Resources Without Limits or Throttling vulnerability in Imagemagick 7.0.61
In ImageMagick 7.0.6-1, a memory exhaustion vulnerability was found in the function ReadSUNImage in coders/sun.c, which allows attackers to cause a denial of service.
network
low complexity
imagemagick CWE-770
7.5