Aller au contenu
Appaloosa Scout

Vulnérabilités

Vulnérabilités des apps suivies

845 entrées

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

CVE
CVE-2018-5187
CRITICAL 9.8 Réseau 1 apps

Memory safety bugs present in Firefox 60 and Firefox ESR 60. Some of these bugs showed evidence of memory corruption and we presume that with enough effort tha…

CVE-2018-5156
CRITICAL 9.8 Réseau 1 apps

A vulnerability can occur when capturing a media stream when the media source type is changed as the capture is occurring. This can result in stream data being…

CVE-2018-12378
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability can occur when an IndexedDB index is deleted while still in use by JavaScript code that is providing payload values to be stored…

CVE-2018-12377
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability can occur when refresh driver timers are refreshed in some circumstances during shutdown when the timer is deleted while still i…

CVE-2018-12376
CRITICAL 9.8 Réseau 1 apps

Memory safety bugs present in Firefox 61 and Firefox ESR 60.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort t…

CVE-2018-8494
CRITICAL 7.5

MS XML Remote Code Execution Vulnerability

CVE-2018-8490
CRITICAL 7.6

Windows Hyper-V Remote Code Execution Vulnerability

CVE-2018-8489
CRITICAL 7.6

Windows Hyper-V Remote Code Execution Vulnerability

CVE-2018-17456
CRITICAL 9.8 Réseau 1 apps

Git before 2.14.5, 2.15.x before 2.15.3, 2.16.x before 2.16.5, 2.17.x before 2.17.2, 2.18.x before 2.18.1, and 2.19.x before 2.19.1 allows remote code executio…

CVE-2018-1000802
CRITICAL 9.8 Réseau 1 apps

Python Software Foundation Python (CPython) version 2.7 contains a CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') …

CVE-2018-8475
CRITICAL 8.8

Windows Remote Code Execution Vulnerability

CVE-2018-8439
CRITICAL 7.6

Windows Hyper-V Remote Code Execution Vulnerability

CVE-2018-8420
CRITICAL 7.5

MS XML Remote Code Execution Vulnerability

CVE-2018-8332
CRITICAL 8.8

Win32k Graphics Remote Code Execution Vulnerability

CVE-2018-0965
CRITICAL 7.6

Windows Hyper-V Remote Code Execution Vulnerability

CVE-2018-8350
CRITICAL 4.2

Windows PDF Remote Code Execution Vulnerability

CVE-2018-8345
CRITICAL 7.5

LNK Remote Code Execution Vulnerability

CVE-2018-8344
CRITICAL 7.8

Microsoft Graphics Remote Code Execution Vulnerability

CVE-2018-8251
CRITICAL 4.2

Media Foundation Memory Corruption Vulnerability

CVE-2018-8231
CRITICAL 8.1

HTTP Protocol Stack Remote Code Execution Vulnerability

CVE-2018-8225
CRITICAL 8.1

Windows DNSAPI Remote Code Execution Vulnerability

CVE-2018-8213
CRITICAL 7.8

Windows Remote Code Execution Vulnerability

CVE-2018-5183
CRITICAL 9.8 Réseau 1 apps

Mozilla developers backported selected changes in the Skia library. These changes correct memory corruption issues including invalid buffer reads and writes du…

CVE-2018-5159
CRITICAL 9.8 Réseau 1 apps

An integer overflow can occur in the Skia library due to 32-bit integer use in an array without integer overflow checks, resulting in possible out-of-bounds wr…

CVE-2018-5155
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability can occur while adjusting layout during SVG animations with text paths. This results in a potentially exploitable crash. This vu…

CVE-2018-5154
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability can occur while enumerating attributes during SVG animations with clip paths. This results in a potentially exploitable crash. T…

CVE-2018-5150
CRITICAL 9.8 Réseau 1 apps

Memory safety bugs were reported in Firefox 59, Firefox ESR 52.7, and Thunderbird 52.7. Some of these bugs showed evidence of memory corruption and we presume …

CVE-2018-5146
CRITICAL 8.8 Réseau 1 apps

An out of bounds memory write while processing Vorbis audio data was reported through the Pwn2Own contest. This vulnerability affects Firefox < 59.0.1, Firefox…

CVE-2018-5145
CRITICAL 9.8 Réseau 1 apps

Memory safety bugs were reported in Firefox ESR 52.6. These bugs showed evidence of memory corruption and we presume that with enough effort that some of these…

CVE-2018-5104
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability can occur during font face manipulation when a font face is freed while still in use, resulting in a potentially exploitable cra…

CVE-2018-5103
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability can occur during mouse event handling due to issues with multiprocess support. This results in a potentially exploitable crash. …

CVE-2018-5102
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability can occur when manipulating HTML media elements with media streams, resulting in a potentially exploitable crash. This vulnerabi…

CVE-2018-5099
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability can occur when the widget listener is holding strong references to browser objects that have previously been freed, resulting in…

CVE-2018-5098
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability can occur when form input elements, focus, and selections are manipulated by script content. This results in a potentially explo…

CVE-2018-5097
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability can occur during XSL transformations when the source document for the transformation is manipulated by script content during the…

CVE-2018-5096
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability can occur while editing events in form elements on a page, resulting in a potentially exploitable crash. This vulnerability affe…

CVE-2018-5095
CRITICAL 9.8 Réseau 1 apps

An integer overflow vulnerability in the Skia library when allocating memory for edge builders on some systems with at least 8 GB of RAM. This results in the u…

CVE-2018-5089
CRITICAL 9.8 Réseau 1 apps

Memory safety bugs were reported in Firefox 57 and Firefox ESR 52.5. Some of these bugs showed evidence of memory corruption and we presume that with enough ef…

CVE-2017-7828
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability can occur when flushing and resizing layout because the "PressShell" object has been freed while still in use. This results in a…

CVE-2017-7826
CRITICAL 9.8 Réseau 1 apps

Memory safety bugs were reported in Firefox 56 and Firefox ESR 52.4. Some of these bugs showed evidence of memory corruption and we presume that with enough ef…

CVE-2017-7824
CRITICAL 9.8 Réseau 1 apps

A buffer overflow occurs when drawing and validating elements with the ANGLE graphics library, used for WebGL content. This is due to an incorrect value being …

CVE-2017-7819
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability can occur in design mode when image objects are resized if objects referenced during the resizing have been freed from memory. T…

CVE-2017-7818
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability can occur when manipulating arrays of Accessible Rich Internet Applications (ARIA) elements within containers through the DOM. T…

CVE-2017-7810
CRITICAL 9.8 Réseau 1 apps

Memory safety bugs were reported in Firefox 55 and Firefox ESR 52.3. Some of these bugs showed evidence of memory corruption and we presume that with enough ef…

CVE-2017-7809
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability can occur when an editor DOM node is deleted prematurely during tree traversal while still bound to the document. This results i…

CVE-2017-7802
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability can occur when manipulating the DOM during the resize event of an image element. If these elements have been freed due to a lack…

CVE-2017-7801
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability can occur while re-computing layout for a "marquee" element during window resizing where the updated style object is freed while…

CVE-2017-7800
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability can occur in WebSockets when the object holding the connection is freed before the disconnection operation is finished. This res…

CVE-2017-7793
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability can occur in the Fetch API when the worker or the associated window are freed when still in use, resulting in a potentially expl…

CVE-2017-7792
CRITICAL 9.8 Réseau 1 apps

A buffer overflow will occur when viewing a certificate in the certificate manager if the certificate has an extremely long object identifier (OID). This resul…