Microsoft Edge Chakra JIT BailOutOnTaggedValue Bailouts
Microsoft Edge Chakra JIT BailOutOnTaggedValue bailouts can be generated for constant values.MD5 | b08560e7ac644d466d3a2421baf54863DownloadMicrosoft Edge: Chakra: JIT: BailOutOnTaggedValue bailouts can...
View ArticleMicrosoft Edge Chakra JIT GlobOpt::OptTagChecks Property Consideration
Microsoft Edge Chakra JIT GlobOpt::OptTagChecks must consider IsLoopPrePass properly.MD5 | 5bd662559cea0fe382cb5b1af85cbdb3DownloadMicrosoft Edge: Chakra: JIT: GlobOpt::OptTagChecks must consider...
View ArticleMicrosoft Edge Chakra JIT Inline::InlineCallApplyTarget_Shared Failed Return
Microsoft Edge Chakra JIT Inline::InlineCallApplyTarget_Shared does not return the return instruction.MD5 | a4510584c0f734fd5474e401bf490892DownloadMicrosoft Edge: Chakra: JIT:...
View ArticleMicrosoft Edge Chakra JIT Incorrect Function Declaration Scope
Microsoft Edge Chakra JIT suffers from an incorrect function declaration scope.MD5 | 3f27494ced33a270a79920688e517df8DownloadMicrosoft Edge: Chakra: JIT: Incorrect function declaration scope...
View ArticleMicrosoft Windows win32kbase!NtQueryCompositionInputQueueAndTransform Kernel...
The win32k!NtQueryCompositionInputQueueAndTransform system call may disclose portions of uninitialized kernel stack memory to user-mode clients on Windows 10.MD5 |...
View ArticleMicrosoft Windows win32kfull!GreUpdateSpriteInternal Kernel Stack Memory...
On Windows 10 32-bit version 1709, a kernel stack memory disclosure was discovered in win32kfull!GreUpdateSpriteInternal.MD5 | bba9e21920f1470c2c04ff12bffe0c98DownloadWindows Kernel stack memory...
View ArticleLinux mincore() Kernel Heap Page Disclosure
Linux mincore() discloses uninitialized kernel heap pages. When __walk_page_range() is used on a VM_HUGETLB VMA, callbacks from the mm_walk structure are only invoked for present pages. However,...
View ArticleCommuniGatePro 6.1.16 - Cross-Site Scripting
EDB-ID: 43177Author: Boumediene KADDOURPublished: 2017-11-15CVE: CVE-2017-16962 Type: WebappsPlatform: MultipleVulnerable App: N/A # Date: 15/11/2017 # Exploit Author: Boumediene KADDOUR # Unit:...
View ArticleSamba CVE-2017-9461 Remote Denial of Service Vulnerability
Samba is prone to a remote denial-of-service vulnerability. An attacker can exploit this issue to cause the application to cause an infinite loop with high CPU usage and memory consumption, denying...
View ArticleExim 4.89 - 'BDAT' Denial of Service
EDB-ID: 43184Author: mehPublished: 2017-11-27CVE: CVE-2017-16944 Type: DosPlatform: MultipleAliases: N/AAdvisory/Source: LinkTags: Denial of Service (DoS)Vulnerable App:...
View ArticleMicrosoft Edge Chakra JIT - Incorrect Function Declaration Scope
EDB-ID: 43182Author: Google Security ResearchPublished: 2017-11-27CVE: CVE-2017-11870 Type: DosPlatform: WindowsAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A Source:...
View ArticleMicrosoft Edge Chakra JIT - 'Inline::InlineCallApplyTarget_Shared' does not...
EDB-ID: 43181Author: Google Security ResearchPublished: 2017-11-27CVE: CVE-2017-11841 Type: DosPlatform: WindowsAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A Source:...
View ArticleMicrosoft Edge Chakra JIT - 'GlobOpt::OptTagChecks' Must Consider...
EDB-ID: 43183Author: Google Security ResearchPublished: 2017-11-27CVE: CVE-2017-11840 Type: DosPlatform: WindowsAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A Source:...
View ArticleMicrosoft Edge Chakra JIT - 'BailOutOnTaggedValue' Bailouts Type Confusion
EDB-ID: 43180Author: Google Security ResearchPublished: 2017-11-27CVE: CVE-2017-11839 Type: DosPlatform: WindowsAliases: N/AAdvisory/Source: LinkTags: N/AVulnerable App: N/A Source:...
View ArticleWinamp Pro 5.66.Build.3512 - Denial of Service
EDB-ID: 43186Author: R.YavariPublished: 2017-11-22CVE: CVE-2017-16951 Type: DosPlatform: WindowsVulnerable App: # Exploit Title: Winamp Pro (.wav|.wmv|.au|.asf|.aiff|.aif ) Denial of Service # Date:...
View ArticleKMPlayer 4.2.2.4 - Denial of Service
EDB-ID: 43185Author: R.YavariPublished: 2017-11-22CVE: CVE-2017-16952 Type: DosPlatform: WindowsVulnerable App: # Exploit Title: KMPlayer .nsv Denial of Service # Date: 2017-11-22 # Exploit Author:...
View ArticleDiving Log 6.0 - XML External Entity Injection
EDB-ID: 43187Author: Trent GordonPublished: 2017-11-27CVE: CVE-2017-9095 Type: LocalPlatform: WindowsVulnerable App: [+] Date: 27-11-2017 [+] Exploit Author: Trent Gordon [+] Vendor Homepage:...
View ArticleZTE ZXDSL 831CII - Improper Access Restrictions
EDB-ID: 43188Author: Ibad ShahPublished: 2017-11-27CVE: CVE-2017-16953 Type: WebappsPlatform: HardwareVulnerable App: N/A # Date: 27/11/2017 # Exploit Author: Ibad Shah # Vendor Homepage: zte.com.cn #...
View ArticleLibxml2 'malloc.c' CVE-2016-3627 Denial of Service Vulnerability
Libxml2 is prone to a denial-of-service vulnerability. An attacker can exploit this issue to cause denial-of-service condition. Due to the nature of this issue, code-execution may be possible but this...
View Articlelibxml2 CVE-2016-3705 Stack Buffer Overflow Vulnerability
libxml2 is prone to a stack-based buffer-overflow vulnerability because it fails to perform adequate boundary checks on user-supplied input. Attackers can exploit this issue to execute arbitrary code...
View Article