LiveActive security incident?Get immediate response
CVE archive

March 2018

Browse CVE records published in March 2018, with severity, affected products, CWE, KEV, and source-backed vulnerability context.

Showing 50 of 1325 matching CVEs · Page 14 of 27.

Unknown · CVSS Not scored

CVE-2018-20669: An issue where a provided address with access_ok() is not checked was discovered in i915_gem_execbuffer2_io...

An issue where a provided address with access_ok() is not checked was discovered in i915_gem_execbuffer2_ioctl in drivers/gpu/drm/i915/i915_gem_execbuffer.c in the Linux kernel through 4.19.13. A local attacker can craft a malicious IOCTL function call to overwrite arbitrary kernel memory, resulting in a Denial of Service or privilege escalation.

Published Mar 18, 2019 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2018-20615: An out-of-bounds read issue was discovered in the HTTP/2 protocol decoder in HAProxy 1.8.x and 1.9.x throug...

An out-of-bounds read issue was discovered in the HTTP/2 protocol decoder in HAProxy 1.8.x and 1.9.x through 1.9.0 which can result in a crash. The processing of the PRIORITY flag in a HEADERS frame requires 5 extra bytes, and while these bytes are skipped, the total frame length was not re-checked to make sure they were present in the frame.

Published Mar 18, 2019 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2018-20621: An issue was discovered in Microvirt MEmu 6.0.6.

An issue was discovered in Microvirt MEmu 6.0.6. The MemuService.exe service binary is vulnerable to local privilege escalation through binary planting due to insecure permissions set at install time. This allows code to be run as NT AUTHORITY/SYSTEM.

Published Mar 13, 2019 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2018-20378: The L2CAP signaling channel implementation and SDP server implementation in OpenSynergy Blue SDK 3.2 throug...

The L2CAP signaling channel implementation and SDP server implementation in OpenSynergy Blue SDK 3.2 through 6.0 allow remote, unauthenticated attackers to execute arbitrary code or cause a denial of service via malicious L2CAP configuration requests, in conjunction with crafted SDP communication over maliciously configured L2CAP channels. The attacker must have connectivity over the Bluetooth physical layer, and must be able to send raw L2CAP frames. This is related to L2Cap_HandleConfigReq in core/stack/l2cap/l2cap_sm.c and SdpServHandleServiceSearchAttribReq in core/stack/sdp/sdpserv.c.

Published Mar 29, 2019 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2018-20218: An issue was discovered on Teracue ENC-400 devices with firmware 2.56 and below.

An issue was discovered on Teracue ENC-400 devices with firmware 2.56 and below. The login form passes user input directly to a shell command without any kind of escaping or validation in /usr/share/www/check.lp file. An attacker is able to perform command injection using the "password" parameter in the login form.

Published Mar 17, 2019 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2018-20333: An issue was discovered in ASUSWRT 3.0.0.4.384.20308.

An issue was discovered in ASUSWRT 3.0.0.4.384.20308. An unauthenticated user can request /update_applist.asp to see if a USB device is attached to the router and if there are apps installed on the router.

Published Mar 20, 2020 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2018-20334: An issue was discovered in ASUSWRT 3.0.0.4.384.20308.

An issue was discovered in ASUSWRT 3.0.0.4.384.20308. When processing the /start_apply.htm POST data, there is a command injection issue via shell metacharacters in the fb_email parameter. By using this issue, an attacker can control the router and get shell.

Published Mar 20, 2020 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2018-20340: Yubico libu2f-host 1.1.6 contains unchecked buffers in devs.c, which could enable a malicious token to expl...

Yubico libu2f-host 1.1.6 contains unchecked buffers in devs.c, which could enable a malicious token to exploit a buffer overflow. An attacker could use this to attempt to execute malicious code using a crafted USB device masquerading as a security token on a computer where the affected library is currently in use. It is not possible to perform this attack with a genuine YubiKey.

Published Mar 17, 2019 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2018-20187: A side-channel issue was discovered in Botan before 2.9.0.

A side-channel issue was discovered in Botan before 2.9.0. An attacker capable of precisely measuring the time taken for ECC key generation may be able to derive information about the high bits of the secret key, as the function to derive the public point from the secret scalar uses an unblinded Montgomery ladder whose loop iteration count depends on the bitlength of the secret. This issue affects only key generation, not ECDSA signatures or ECDH key agreement.

Published Mar 8, 2019 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2018-20220: An issue was discovered on Teracue ENC-400 devices with firmware 2.56 and below.

An issue was discovered on Teracue ENC-400 devices with firmware 2.56 and below. While the web interface requires authentication before it can be interacted with, a large portion of the HTTP endpoints are missing authentication. An attacker is able to view these pages before being authenticated, and some of these pages may disclose sensitive information.

Published Mar 17, 2019 · Updated Aug 5, 2024

Unknown · CVSS Not scored

CVE-2018-20219: An issue was discovered on Teracue ENC-400 devices with firmware 2.56 and below.

An issue was discovered on Teracue ENC-400 devices with firmware 2.56 and below. After successful authentication, the device sends an authentication cookie to the end user such that they can access the devices web administration panel. This token is hard-coded to a string in the source code (/usr/share/www/check.lp file). By setting this cookie in a browser, an attacker is able to maintain access to every ENC-400 device without knowing the password, which results in authentication bypass. Even if a user changes the password on the device, this token is static and unchanged.

Published Mar 17, 2019 · Updated Aug 5, 2024