Vulnerabilities > High

DATE CVE VULNERABILITY TITLE RISK
2017-08-04 CVE-2017-12481 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Ledger-Cli Ledger 3.1.1
The find_option function in option.cc in Ledger 3.1.1 allows remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted file.
local
low complexity
ledger-cli CWE-119
7.8
2017-08-04 CVE-2017-2221 Untrusted Search Path vulnerability in Baidu IME 3.6.1.6
Untrusted search path vulnerability in Installer of Baidu IME Ver3.6.1.6 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
baidu CWE-426
7.8
2017-08-04 CVE-2017-10820 Untrusted Search Path vulnerability in IPA IP Messenger 4.60
Untrusted search path vulnerability in Installer of IP Messenger for Win 4.60 and earlier allows an attacker to gain privileges via a Trojan horse DLL in an unspecified directory.
local
low complexity
ipa CWE-426
7.8
2017-08-04 CVE-2017-10815 Improper Authentication vulnerability in Intercom Malion 5.2.1
MaLion for Windows 5.2.1 and earlier (only when "Remote Control" is installed) and MaLion for Mac 4.0.1 to 5.2.1 (only when "Remote Control" is installed) allow remote attackers to bypass authentication to execute arbitrary commands or operations on Terminal Agent.
network
high complexity
intercom CWE-287
8.1
2017-08-04 CVE-2017-12459 Out-of-bounds Write vulnerability in GNU Binutils
The bfd_mach_o_read_symtab_strtab function in bfd/mach-o.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap write and possibly achieve code execution via a crafted mach-o file.
local
low complexity
gnu CWE-787
7.8
2017-08-04 CVE-2017-12458 Out-of-bounds Read vulnerability in GNU Binutils
The nlm_swap_auxiliary_headers_in function in bfd/nlmcode.h in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap read via a crafted nlm file.
local
low complexity
gnu CWE-125
7.8
2017-08-04 CVE-2017-12457 NULL Pointer Dereference vulnerability in GNU Binutils
The bfd_make_section_with_flags function in section.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause a NULL dereference via a crafted file.
local
low complexity
gnu CWE-476
7.8
2017-08-04 CVE-2017-12456 Out-of-bounds Read vulnerability in GNU Binutils
The read_symbol_stabs_debugging_info function in rddbg.c in GNU Binutils 2.29 and earlier allows remote attackers to cause an out of bounds heap read via a crafted binary file.
local
low complexity
gnu CWE-125
7.8
2017-08-04 CVE-2017-12455 Out-of-bounds Read vulnerability in GNU Binutils
The evax_bfd_print_emh function in vms-alpha.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an out of bounds heap read via a crafted vms alpha file.
local
low complexity
gnu CWE-125
7.8
2017-08-04 CVE-2017-12454 Out-of-bounds Read vulnerability in GNU Binutils
The _bfd_vms_slurp_egsd function in bfd/vms-alpha.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause an arbitrary memory read via a crafted vms alpha file.
local
low complexity
gnu CWE-125
7.8