CVE-2018-10018
The GDASPAMLib.AntiSpam ActiveX control ASKGDASpam.dll in G DATA Total Security 25.4.0.3 has a buffer overflow via a long IsBlackListed argument.
Source: CVE-2018-10018
CVE-2018-10018
The GDASPAMLib.AntiSpam ActiveX control ASKGDASpam.dll in G DATA Total Security 25.4.0.3 has a buffer overflow via a long IsBlackListed argument.
Source: CVE-2018-10018
CVE-2018-14054
A double free exists in the MP4StringProperty class in mp4property.cpp in MP4v2 2.0.0. A dangling pointer is freed again in the destructor once an exception is triggered.
Source: CVE-2018-14054
CVE-2017-1395
IBM Security Identity Governance and Intelligence Virtual Appliance 5.2 through 5.2.3.2 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. An attacker could exploit this vulnerability to obtain sensitive information using man in the middle techniques. IBM X-Force ID: 127341.
Source: CVE-2017-1395
CVE-2017-1367
IBM Security Identity Governance and Intelligence Virtual Appliance 5.2 through 5.2.3.2 stores sensitive information in URL parameters. This may lead to information disclosure if unauthorized parties have access to the URLs via server logs, referrer header or browser history. IBM X-Force ID: 126860.
Source: CVE-2017-1367
CVE-2018-14052
An issue has been found in libwav through 2017-04-20. It is a SEGV in the function apply_gain in wav_gain/wav_gain.c.
Source: CVE-2018-14052
CVE-2018-14051
The function wav_read in libwav.c in libwav through 2017-04-20 has an infinite loop.
Source: CVE-2018-14051
CVE-2018-14050
An issue has been found in libwav through 2017-04-20. It is a SEGV in the function wav_free in libwav.c.
Source: CVE-2018-14050
CVE-2018-14047
** DISPUTED ** An issue has been found in PNGwriter 0.7.0. It is a SEGV in pngwriter::readfromfile in pngwriter.cc. NOTE: there is a "Warning: PNGwriter was never designed for reading untrusted files with it. Do NOT use this in sensitive environments, especially DO NOT read PNGs from unknown sources with it!" statement in the master/README.md file.
Source: CVE-2018-14047
CVE-2018-14049
An issue has been found in libwav through 2017-04-20. It is a SEGV in the function print_info in wav_info/wav_info.c.
Source: CVE-2018-14049
CVE-2018-14048
An issue has been found in libpng 1.6.34. It is a SEGV in the function png_free_data in png.c, related to the recommended error handling for png_read_image.
Source: CVE-2018-14048