Latest CVE Feed
-
10.0
HIGHCVE-2017-14914
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, handles in the global client structure can become stale.... Read more
Affected Products : android- EPSS Score: %0.11
- Published: Dec. 05, 2017
- Modified: Apr. 20, 2025
-
9.3
HIGHCVE-2017-11043
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in a WiFI driver function, an integer overflow leading to heap buffer overflow may potentially occur.... Read more
Affected Products : android- EPSS Score: %0.06
- Published: Dec. 05, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-11007
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, there is a possibility of stack corruption due to buffer overflow of Partition name while converting ascii string to unicode string in function... Read more
Affected Products : android- EPSS Score: %0.02
- Published: Dec. 05, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2017-11006
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a Use After Free condition can occur during positioning.... Read more
Affected Products : android- EPSS Score: %0.12
- Published: Dec. 05, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2017-11005
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, a Use After Free condition can occur during a deinitialization path.... Read more
Affected Products : android- EPSS Score: %0.12
- Published: Dec. 05, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-9698
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, improperly specified offset/size values for a submission command could cause a math operation to overflow and could result in an access to arbi... Read more
Affected Products : android- EPSS Score: %0.02
- Published: Dec. 05, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2017-14907
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, cryptographic strength is reduced while deriving disk encryption key.... Read more
Affected Products : android- EPSS Score: %0.07
- Published: Dec. 05, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-14900
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing the QCA_NL80211_VENDOR_SUBCMD_GET_CHAIN_RSSI vendor command, in which attribute QCA_WLAN_VENDOR_ATTR_MAC_ADDR contains fewer t... Read more
Affected Products : android- EPSS Score: %0.02
- Published: Dec. 05, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-14898
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, while processing the QCA_NL80211_VENDOR_SUBCMD_SET_TXPOWER_SCALE vendor command, in which attribute QCA_WLAN_VENDOR_ATTR_TXPOWER_SCALE contains... Read more
Affected Products : android- EPSS Score: %0.02
- Published: Dec. 05, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-14896
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, there is a memory allocation without a length field validation in the mobicore driver which can result in an undersize buffer allocation. Ultim... Read more
Affected Products : android- EPSS Score: %0.02
- Published: Dec. 05, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-11047
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in a graphics driver ioctl handler, the lack of copy_from_user() function calls may result in writes to kernel memory.... Read more
Affected Products : android- EPSS Score: %0.02
- Published: Dec. 05, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-11042
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, ImsService and the IQtiImsExt AIDL APIs are not subject to access control.... Read more
Affected Products : android- EPSS Score: %0.02
- Published: Dec. 05, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-11030
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, in the HDMI video driver function hdmi_edid_sysfs_rda_res_info(), userspace can perform an arbitrary write into kernel memory.... Read more
Affected Products : android- EPSS Score: %0.02
- Published: Dec. 05, 2017
- Modified: Apr. 20, 2025
-
7.8
HIGHCVE-2017-11016
In Android for MSM, Firefox OS for MSM, QRD Android, with all Android releases from CAF using the Linux kernel, when memory allocation fails while creating a calibration block in create_cal_block stale pointers are left uncleared.... Read more
Affected Products : android- EPSS Score: %0.02
- Published: Dec. 05, 2017
- Modified: Apr. 20, 2025
-
7.5
HIGHCVE-2017-17066
The (1) i2pd before 2.17 and (2) kovri pre-alpha implementations of the I2P routing protocol do not properly handle Garlic DeliveryTypeTunnel packets, which allows remote attackers to obtain sensitive information from process memory via crafted packets th... Read more
- EPSS Score: %1.35
- Published: Dec. 05, 2017
- Modified: Apr. 20, 2025
-
5.5
MEDIUMCVE-2017-17113
ntguard_x64.sys 0.18780.0.0 in IKARUS anti.virus 2.16.15 has a NULL pointer dereference via a 0x830000c4 DeviceIoControl request.... Read more
- EPSS Score: %0.05
- Published: Dec. 04, 2017
- Modified: Apr. 20, 2025
-
10.0
HIGHCVE-2017-16930
The remote management interface on the Claymore Dual GPU miner 10.1 allows an unauthenticated remote attacker to execute arbitrary code due to a stack-based buffer overflow in the request handler. This can be exploited via a long API request that is misha... Read more
Affected Products : claymore_dual_miner- EPSS Score: %53.86
- Published: Dec. 05, 2017
- Modified: Apr. 20, 2025
-
8.5
HIGHCVE-2017-16929
The remote management interface on the Claymore Dual GPU miner 10.1 is vulnerable to an authenticated directory traversal vulnerability exploited by issuing a specially crafted request, allowing a remote attacker to read/write arbitrary files. This can be... Read more
Affected Products : claymore_dual_miner- EPSS Score: %32.28
- Published: Dec. 05, 2017
- Modified: Apr. 20, 2025
-
6.1
MEDIUMCVE-2017-16721
A Cross-site Scripting issue was discovered in Geovap Reliance SCADA Version 4.7.3 Update 2 and prior. This vulnerability could allow an unauthenticated attacker to inject arbitrary code.... Read more
Affected Products : reliance-scada- EPSS Score: %0.31
- Published: Dec. 04, 2017
- Modified: Apr. 20, 2025
-
6.1
MEDIUMCVE-2017-17057
There is a reflected XSS vulnerability in ZKTime Web 2.0.1.12280. The vulnerability exists due to insufficient filtration of user-supplied data in the 'Range' field of the 'Department' module in a Personnel Advanced Query. A remote attacker can execute ar... Read more
Affected Products : zktime_web- EPSS Score: %0.23
- Published: Dec. 04, 2017
- Modified: Apr. 20, 2025