CVE List

Id CVE No. Status Description Phase Votes Comments Actions
87764  CVE-2016-10249  Candidate  Integer overflow in the jpc_dec_tiledecode function in jpc_dec.c in JasPer before 1.900.12 allows remote attackers to have unspecified impact via a crafted image file, which triggers a heap-based buffer overflow.  Assigned (20170312)  None (candidate not yet proposed)    View
87766  CVE-2016-10250  Candidate  The jp2_colr_destroy function in jp2_cod.c in JasPer before 1.900.13 allows remote attackers to cause a denial of service (NULL pointer dereference) by leveraging incorrect cleanup of JP2 box data on error. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-8887.  Assigned (20170312)  None (candidate not yet proposed)    View
87767  CVE-2016-10251  Candidate  Integer overflow in the jpc_pi_nextcprl function in jpc_t2cod.c in JasPer before 1.900.20 allows remote attackers to have unspecified impact via a crafted file, which triggers use of an uninitialized value.  Assigned (20170312)  None (candidate not yet proposed)    View
103647  CVE-2017-6827  Candidate  Heap-based buffer overflow in the MSADPCM::initializeCoefficients function in MSADPCM.cpp in audiofile (aka libaudiofile and Audio File Library) 0.3.6 allows remote attackers to have unspecified impact via a crafted audio file.  Assigned (20170312)  None (candidate not yet proposed)    View
103648  CVE-2017-6828  Candidate  Heap-based buffer overflow in the readValue function in FileHandle.cpp in audiofile (aka libaudiofile and Audio File Library) 0.3.6 allows remote attackers to have unspecified impact via a crafted WAV file.  Assigned (20170312)  None (candidate not yet proposed)    View

Page 20125 of 20943, showing 5 records out of 104715 total, starting on record 100621, ending on 100625

Actions