LiveActive security incident?Get immediate response
CVE archive

July 2017

Browse CVE records published in July 2017, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 50 of 1427 matching CVEs · Page 19 of 29.

Unknown · CVSS Not scored

CVE-2017-10708: An issue was discovered in Apport through 2.20.x.

An issue was discovered in Apport through 2.20.x. In apport/report.py, Apport sets the ExecutablePath field and it then uses the path to run package specific hooks without protecting against path traversal. This allows remote attackers to execute arbitrary code via a crafted .crash file.

Published Jul 18, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-9891: IrfanView version 4.44 (32bit) with FPX Plugin 4.46 allows attackers to cause a denial of service or possib...

IrfanView version 4.44 (32bit) with FPX Plugin 4.46 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .fpx file, related to "Data from Faulting Address is used as one or more arguments in a subsequent Function Call starting at FPX!FPX_GetScanDevicePropertyGroup+0x0000000000007053."

Published Jul 5, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-9951: The try_read_command function in memcached.c in memcached before 1.4.39 allows remote attackers to cause a...

The try_read_command function in memcached.c in memcached before 1.4.39 allows remote attackers to cause a denial of service (segmentation fault) via a request to add/set a key, which makes a comparison between signed and unsigned int and triggers a heap-based buffer over-read. NOTE: this vulnerability exists because of an incomplete fix for CVE-2016-8705.

Published Jul 17, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-9885: IrfanView version 4.44 (32bit) with FPX Plugin 4.46 allows attackers to cause a denial of service or possib...

IrfanView version 4.44 (32bit) with FPX Plugin 4.46 allows attackers to cause a denial of service or possibly have unspecified other impact via a crafted .fpx file, related to "Data from Faulting Address is used as one or more arguments in a subsequent Function Call starting at FPX!FPX_GetScanDevicePropertyGroup+0x0000000000006a98."

Published Jul 5, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-9906: XnView Classic for Windows Version 2.40 allows remote attackers to cause a denial of service or possibly ha...

XnView Classic for Windows Version 2.40 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted .fpx file, related to "Data from Faulting Address is used as one or more arguments in a subsequent Function Call starting at Xfpx!gffGetFormatInfo+0x0000000000028508."

Published Jul 5, 2017 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2017-9917: IrfanView version 4.44 (32bit) with TOOLS Plugin 4.50 might allow attackers to cause a denial of service or...

IrfanView version 4.44 (32bit) with TOOLS Plugin 4.50 might allow attackers to cause a denial of service or possibly have unspecified other impact via a crafted file, related to "Data from Faulting Address is used as one or more arguments in a subsequent Function Call starting at ntdll_77df0000!RtlFreeHandle+0x0000000000000218."

Published Jul 5, 2017 · Updated Aug 5, 2024