LiveActive security incident?Get immediate response
CVE archive

February 2017

Browse CVE records published in February 2017, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 50 of 872 matching CVEs · Page 12 of 18.

Unknown · CVSS Not scored

CVE-2017-6074: The dccp_rcv_state_process function in net/dccp/input.c in the Linux kernel through 4.9.11 mishandles DCCP_...

The dccp_rcv_state_process function in net/dccp/input.c in the Linux kernel through 4.9.11 mishandles DCCP_PKT_REQUEST packet data structures in the LISTEN state, which allows local users to obtain root privileges or cause a denial of service (double free) via an application that makes an IPV6_RECVPKTINFO setsockopt system call.

Published Feb 18, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-6009: An issue was discovered in icoutils 0.31.1.

An issue was discovered in icoutils 0.31.1. A buffer overflow was observed in the "decode_ne_resource_id" function in the "restable.c" source file. This is happening because the "len" parameter for memcpy is not checked for size and thus becomes a negative integer in the process, resulting in a failed memcpy. This affects wrestool.

Published Feb 16, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-5967: The time subsystem in the Linux kernel through 4.9.9, when CONFIG_TIMER_STATS is enabled, allows local user...

The time subsystem in the Linux kernel through 4.9.9, when CONFIG_TIMER_STATS is enabled, allows local users to discover real PID values (as distinguished from PID values inside a PID namespace) by reading the /proc/timer_list file, related to the print_timer function in kernel/time/timer_list.c and the __timer_stats_timer_set_start_info function in kernel/time/timer.c.

Published Feb 14, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-6001: Race condition in kernel/events/core.c in the Linux kernel before 4.9.7 allows local users to gain privileg...

Race condition in kernel/events/core.c in the Linux kernel before 4.9.7 allows local users to gain privileges via a crafted application that makes concurrent perf_event_open system calls for moving a software group into a hardware context. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-6786.

Published Feb 18, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-5962: An issue was discovered in contexts_wurfl (for TYPO3) before 0.4.2.

An issue was discovered in contexts_wurfl (for TYPO3) before 0.4.2. The vulnerability exists due to insufficient filtration of user-supplied data in the "force_ua" HTTP GET parameter passed to the "/contexts_wurfl/Library/wurfl-dbapi-1.4.4.0/check_wurfl.php" URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.

Published Feb 12, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-6011: An issue was discovered in icoutils 0.31.1.

An issue was discovered in icoutils 0.31.1. An out-of-bounds read leading to a buffer overflow was observed in the "simple_vec" function in the "extract.c" source file. This affects icotool.

Published Feb 16, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-6010: An issue was discovered in icoutils 0.31.1.

An issue was discovered in icoutils 0.31.1. A buffer overflow was observed in the "extract_icons" function in the "extract.c" source file. This issue can be triggered by processing a corrupted ico file and will result in an icotool crash.

Published Feb 16, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-5945: An issue was discovered in the PoodLL Filter plugin through 3.0.20 for Moodle.

An issue was discovered in the PoodLL Filter plugin through 3.0.20 for Moodle. The vulnerability exists due to insufficient filtration of user-supplied data in the "poodll_audio_url" HTTP GET parameter passed to the "filter_poodll_moodle32_2016112802/poodll/mp3recorderskins/brazil/index.php" URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.

Published Feb 10, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-6014: In Wireshark 2.2.4 and earlier, a crafted or malformed STANAG 4607 capture file will cause an infinite loop...

In Wireshark 2.2.4 and earlier, a crafted or malformed STANAG 4607 capture file will cause an infinite loop and memory exhaustion. If the packet size field in a packet header is null, the offset to read from will not advance, causing continuous attempts to read the same zero length packet. This will quickly exhaust all system memory.

Published Feb 17, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-5964: An issue was discovered in Emoncms through 9.8.0.

An issue was discovered in Emoncms through 9.8.0. The vulnerability exists due to insufficient filtration of user-supplied data in multiple HTTP GET parameters passed to the "emoncms-master/Modules/vis/visualisations/compare.php" URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.

Published Feb 12, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-5963: An issue was discovered in caddy (for TYPO3) before 7.2.10.

An issue was discovered in caddy (for TYPO3) before 7.2.10. The vulnerability exists due to insufficient filtration of user-supplied data in the "paymillToken" HTTP POST parameter passed to the "caddy/Resources/Public/JavaScript/e-payment/paymill/api/php/payment.php" URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.

Published Feb 12, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-5990: An issue was discovered in PhreeBooksERP before 2017-02-13.

An issue was discovered in PhreeBooksERP before 2017-02-13. The vulnerability exists due to insufficient filtration of user-supplied data in the "form" HTTP GET parameter passed to the "PhreeBooksERP-master/extensions/ShippingMethods/ups/label_mgr/js_include.php" and "PhreeBooksERP-master/extensions/ShippingMethods/yrc/label_mgr/js_include.php" URLs. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website. NOTE: these js_include.php files do not exist in the SourceForge "stable release" (aka R37RC1).

Published Feb 15, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-5972: The TCP stack in the Linux kernel 3.x does not properly implement a SYN cookie protection mechanism for the...

The TCP stack in the Linux kernel 3.x does not properly implement a SYN cookie protection mechanism for the case of a fast network connection, which allows remote attackers to cause a denial of service (CPU consumption) by sending many TCP SYN packets, as demonstrated by an attack against the kernel-3.10.0 package in CentOS Linux 7. NOTE: third parties have been unable to discern any relationship between the GitHub Engineering finding and the Trigemini.c attack code.

Published Feb 14, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-5960: An issue was discovered in Phalcon Eye through 0.4.1.

An issue was discovered in Phalcon Eye through 0.4.1. The vulnerability exists due to insufficient filtration of user-supplied data in multiple HTTP GET parameters passed to the "phalconeye-master/public/external/pydio/plugins/editor.webodf/frame.php" URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.

Published Feb 12, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-5961: An issue was discovered in ionize through 1.0.8.

An issue was discovered in ionize through 1.0.8. The vulnerability exists due to insufficient filtration of user-supplied data in the "path" HTTP GET parameter passed to the "ionize-master/themes/admin/javascript/tinymce/jscripts/tiny_mce/plugins/codemirror/dialog.php" URL. An attacker could execute arbitrary HTML and script code in a browser in the context of the vulnerable website.

Published Feb 12, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-5933: Citrix NetScaler ADC and NetScaler Gateway 10.5 before Build 65.11, 11.0 before Build 69.12/69.123, and 11....

Citrix NetScaler ADC and NetScaler Gateway 10.5 before Build 65.11, 11.0 before Build 69.12/69.123, and 11.1 before Build 51.21 randomly generates GCM nonces, which makes it marginally easier for remote attackers to obtain the GCM authentication key and spoof data by leveraging a reused nonce in a session and a "forbidden attack," a similar issue to CVE-2016-0270.

Published Feb 8, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-5928: The W3C High Resolution Time API, as implemented in various web browsers, does not consider that memory-ref...

The W3C High Resolution Time API, as implemented in various web browsers, does not consider that memory-reference times can be measured by a performance.now "Time to Tick" approach even with the https://bugzilla.mozilla.org/show_bug.cgi?id=1167489#c9 protection mechanism in place, which makes it easier for remote attackers to conduct AnC attacks via crafted JavaScript code.

Published Feb 27, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-5940: Firejail before 0.9.44.6 and 0.9.38.x LTS before 0.9.38.10 LTS does not comprehensively address dotfile cas...

Firejail before 0.9.44.6 and 0.9.38.x LTS before 0.9.38.10 LTS does not comprehensively address dotfile cases during its attempt to prevent accessing user files with an euid of zero, which allows local users to conduct sandbox-escape attacks via vectors involving a symlink and the --private option. NOTE: this vulnerability exists because of an incomplete fix for CVE-2017-5180.

Published Feb 9, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-5858: An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacke...

An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to impersonate any user, including contacts, in the vulnerable application's display. This allows for various kinds of social engineering attacks. This CVE is for Converse.js (0.8.0 - 1.0.6, 2.0.0 - 2.0.4).

Published Feb 9, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-5879: An issue was discovered in Exponent CMS 2.4.1.

An issue was discovered in Exponent CMS 2.4.1. This is a blind SQL injection that can be exploited by un-authenticated users via an HTTP GET request and which can be used to dump database data out to a malicious server, using an out-of-band technique, such as select_loadfile(). The vulnerability affects source_selector.php and the following parameter: src.

Published Feb 6, 2017 · Updated Aug 5, 2024