Vulnerabilities > Low

DATE CVE VULNERABILITY TITLE RISK
2017-04-13 CVE-2016-10118 Permissions, Privileges, and Access Controls vulnerability in Firejail Project Firejail
Firejail allows local users to truncate /etc/resolv.conf via a chroot command to /.
local
low complexity
firejail-project CWE-264
3.3
2017-04-12 CVE-2017-3033 Out-of-bounds Read vulnerability in Adobe products
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability when handling JPEG 2000 code-stream tile data.
local
low complexity
adobe CWE-125
3.3
2017-04-12 CVE-2017-3032 Out-of-bounds Read vulnerability in Adobe products
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the JPEG 2000 code-stream parser.
local
low complexity
adobe CWE-125
3.3
2017-04-12 CVE-2017-3031 Out-of-bounds Read vulnerability in Adobe products
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the XSLT engine.
local
low complexity
adobe CWE-125
3.3
2017-04-12 CVE-2017-3029 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adobe products
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability when handling a JPEG 2000 code-stream.
local
low complexity
adobe CWE-119
3.3
2017-04-12 CVE-2017-3022 Out-of-bounds Read vulnerability in Adobe products
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability when parsing the header of a JPEG 2000 file.
local
low complexity
adobe CWE-125
3.3
2017-04-12 CVE-2017-3021 Out-of-bounds Read vulnerability in Adobe products
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the JPEG 2000 parser engine.
local
low complexity
adobe CWE-125
3.3
2017-04-12 CVE-2017-3020 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in Adobe products
Adobe Acrobat Reader versions 11.0.19 and earlier, 15.006.30280 and earlier, 15.023.20070 and earlier have a memory address leak vulnerability in the weblink module.
local
low complexity
adobe CWE-119
3.3
2017-04-12 CVE-2017-0188 Information Exposure vulnerability in Microsoft products
A Win32k information disclosure vulnerability exists in Windows 8.1, Windows RT 8.1, Windows Server 2012, Windows Server 2012 R2, Windows 10, and Windows Server 2016 when the win32k component improperly provides kernel information.
local
low complexity
microsoft CWE-200
3.3
2017-04-12 CVE-2017-0159 Unspecified vulnerability in Microsoft products
A security feature bypass vulnerability exists in Windows 10 1607, Windows Server 2012 R2, and Windows 2016 when ADFS incorrectly treats requests coming from Extranet clients as Intranet requests, aka "ADFS Security Feature Bypass Vulnerability."
network
high complexity
microsoft
3.7