Blog RSSExploits RSSFacebook

DOS

Date D   Description Plat. Author
2017-04-13   Microsoft Windows Kernel - 'win32kfull!SfnINLPUAHDRAWMENUITEM' Stack Memory Disclosure 2 DOS Google Security Research
2017-04-13   Microsoft Windows Kernel - 'win32k.sys' Multiple 'NtGdiGetDIBitsInternal' System Call 2 DOS Google Security Research
2017-04-11   Apple WebKit - 'JSC::SymbolTableEntry::isWatchable' Heap Buffer Overflow 1 DOS Google Security Research
2017-04-11   Apple WebKit - 'Document::adoptNode' Use-After-Free 1 DOS Google Security Research
2017-04-11   Apple WebKit - 'JSC::B3::Procedure::resetReachability' Use-After-Free 1 DOS Google Security Research
2017-04-10   Moxa MXview 2.8 - Denial of Service 1 DOS hyp3rlinx
2017-04-06   Cesanta Mongoose OS - Use-After-Free 1 DOS Compass Security
2017-03-16   CommVault Edge 11 SP6 - Stack Buffer Overflow (PoC) 2 DOS redr2e
2017-04-04   Apple WebKit - 'WebCore::toJS' Use-After-Free 0 DOS Google Security Research
2017-04-04   Apple WebKit - 'WebCore::toJS' Use-After-Free 0 DOS Google Security Research
2017-04-04   Apple WebKit - 'table' Use-After-Free 0 DOS Google Security Research
2017-04-04   Apple WebKit - 'table' Use-After-Free 0 DOS Google Security Research
2017-04-04   Apple WebKit - 'ComposedTreeIterator::traverseNextInShadowTree' Use-After-Free 0 DOS Google Security Research
2017-04-04   Apple WebKit - 'ComposedTreeIterator::traverseNextInShadowTree' Use-After-Free 0 DOS Google Security Research
2017-04-04   Apple WebKit - 'FormSubmission::create' Use-After-Free 0 DOS Google Security Research
2017-04-04   Apple WebKit - 'FormSubmission::create' Use-After-Free 0 DOS Google Security Research
2017-04-04   Apple WebKit - Negative-Size memmove in HTMLFormElement 0 DOS Google Security Research
2017-04-04   Apple WebKit - 'RenderLayer' Use-After-Free 0 DOS Google Security Research
2017-04-04   Apple WebKit - 'RenderLayer' Use-After-Free 0 DOS Google Security Research
2017-04-04   Apple WebKit 10.0.2 - HTMLInputElement Use-After-Free 0 DOS Google Security Research
2017-04-04   Apple WebKit 10.0.2 - HTMLInputElement Use-After-Free 1 DOS Google Security Research
2017-04-04   Broadcom Wi-Fi SoC - Heap Overflow 'wlc_tdls_cal_mic_chk' Due to Large RSN IE in TDLS Setup Confirm 0 DOS Google Security Research
2017-04-04   Apple macOS Kernel 10.12.2 (16C67) - Memory Disclosure Due to Lack of Bounds Checking in AppleIntelC 1 DOS Google Security Research
2017-04-04   Apple macOS Kernel 10.12.3 (16D32) - 'audit_pipe_open' Off-by-One Memory Corruption 1 DOS Google Security Research
2017-04-04   Apple macOS/iOS Kernel 10.12.3 (16D32) - 'bpf' Heap Overflow 1 DOS Google Security Research
2017-04-04   Apple macOS/iOS Kernel 10.12.3 (16D32) - Bad Locking in necp_open Use-After-Free 1 DOS Google Security Research
2017-04-04   Apple macOS/iOS Kernel 10.12.3 (16D32) - Bad Locking in necp_open Use-After-Free 0 DOS Google Security Research
2017-04-04   Apple macOS/iOS Kernel 10.12.3 (16D32) - SIOCGIFORDER Socket ioctl Off-by-One Memory Corruption 1 DOS Google Security Research
2017-04-04   Apple macOS/iOS Kernel 10.12.3 (16D32) - SIOCSIFORDER Socket ioctl Memory Corruption Due to Bad Boun 1 DOS Google Security Research
2017-04-04   Apple macOS Kernel 10.12.3 (16D32) - Use-After-Free Due to Double-Release in posix_spawn 1 DOS Google Security Research
2017-04-04   Apple macOS Kernel 10.12.2 (16C67) - 'AppleIntelCapriController::GetLinkConfig' Code Execution Due t 1 DOS Google Security Research
2017-04-02   BackBox OS - Denial of Service 1 DOS FarazPajohan
2017-03-30   Apple macOS/IOS 10.12.2 (16C67) - 'mach_msg' Heap Overflow 1 DOS Google Security Research
2011-11-02   Apache < 2.0.64 / < 2.2.21 mod_setenvif - Integer Overflow 1 DOS halfdog
2012-01-11   Apache 2.2 - Scoreboard Invalid Free On Shutdown 1 DOS halfdog
2014-01-14   Linux Kernel (Ubuntu 11.10/12.04) - binfmt_script Stack Data Disclosure 1 DOS halfdog
2017-03-28   Microsoft Outlook - HTML Email Denial of Service 2 DOS Haifei Li
2017-03-28   VX Search Enterprise 9.5.12 - 'Verify Email' Buffer Overflow 2 DOS ScrR1pTK1dd13
2017-03-28   MikroTik RouterBoard 6.38.5 - Denial of Service 1 DOS FarazPajohan
2017-03-27   Apple Safari - Out-of-Bounds Read when Calling Bound Function 1 DOS Google Security Research
2017-03-27   Apple Safari - Builtin JavaScript Allows Function.caller to be Used in Strict Mode 0 DOS Google Security Research
2017-03-27   Apple Safari - 'DateTimeFormat.format' Type Confusion 0 DOS Google Security Research
2017-03-27   Disk Sorter Enterprise 9.5.12 - Local Buffer Overflow 1 DOS Nassim Asrir
2017-03-26   Microsoft Visual Studio 2015 update 3 - Denial of Service 1 DOS Peter Baris
2017-03-23   wifirxpower - Local Buffer Overflow (PoC) 1 DOS Nassim Asrir
2017-03-14   APNGDis 2.8 - 'filename' Stack Buffer Overflow (PoC) 1 DOS Alwin Peppels
2017-03-14   APNGDis 2.8 - 'image width / height chunk' Heap Buffer Overflow 1 DOS Alwin Peppels
2017-03-14   APNGDis 2.8 - 'chunk size descriptor' Heap Buffer Overflow 1 DOS Alwin Peppels
2017-03-22   SpyCamLizard 1.230 - Denial of Service 1 DOS ScrR1pTK1dd13
2017-03-20   Microsoft Internet Explorer 11 - 'textarea.defaultValue' Memory Disclosure (MS17-006) 1 DOS Google Security Research
2017-03-20   Mozilla Firefox - 'table' Use-After-Free 1 DOS Google Security Research
2017-03-20   Microsoft Color Management Module 'icm32.dll' - 'icm32!LHCalc3toX_Di16_Do16_Lut8_G32' Out-of-Bounds 0 DOS Google Security Research
2017-03-20   Microsoft Windows - Uniscribe Heap Out-of-Bounds Read in 'USP10!ScriptApplyLogicalWidth' Triggered v 0 DOS Google Security Research
2017-03-20   Microsoft Color Management Module 'icm32.dll' - 'icm32!Fill_ushort_ELUTs_from_lut16Tag' Out-of-Bound 0 DOS Google Security Research
2017-03-20   Microsoft GDI+ - 'gdiplus!GetRECTSForPlayback' Out-of-Bounds Read (MS17-013) 0 DOS Google Security Research
2017-03-20   Microsoft Windows - Uniscribe Font Processing Multiple Heap Out-of-Bounds and Wild Reads (MS17-011) 0 DOS Google Security Research
2017-03-20   Microsoft Windows - Uniscribe Font Processing Buffer Overflow in 'USP10!FillAlternatesList' (MS17-01 0 DOS Google Security Research
2017-03-20   Microsoft Windows - Uniscribe Font Processing Heap Memory Corruption Around 'USP10!BuildFSM' (MS17-0 0 DOS Google Security Research
2017-03-20   Microsoft Windows - Uniscribe Font Processing Heap Out-of-Bounds Write in 'USP10!UpdateGlyphFlags' ( 0 DOS Google Security Research
2017-03-20   Microsoft Windows - Uniscribe Font Processing Heap Buffer Overflow in 'USP10!ttoGetTableData' (MS17- 0 DOS Google Security Research
2017-03-20   Microsoft Windows - Uniscribe Font Processing Heap Memory Corruption in 'USP10!MergeLigRecords' (MS1 0 DOS Google Security Research
2017-03-20   Microsoft Windows - Uniscribe Font Processing Heap Memory Corruption in 'USP10!otlCacheManager::Glyp 0 DOS Google Security Research
2017-03-20   Microsoft Windows - Uniscribe Font Processing Heap Out-of-Bounds Read/Write in 'USP10!AssignGlyphTyp 0 DOS Google Security Research
2017-03-20   Microsoft Windows - 'USP10!otlList::insertAt' Uniscribe Font Processing Heap Buffer Overflow (MS17-0 0 DOS Google Security Research
2017-03-20   Microsoft Windows - Uniscribe Font Processing Out-of-Bounds Read in usp10!otlChainRuleSetTable::rule 0 DOS Google Security Research
2017-03-20   Microsoft Windows Kernel - Registry Hive Loading Crashes in nt!nt!HvpGetBinMemAlloc / nt!ExpFindAndR 0 DOS Google Security Research
2017-03-20   Google Nest Cam 5.2.1
 - Buffer Overflow Conditions Over Bluetooth LE 0 DOS Jason Doyle
2017-03-20   ExtraPuTTY 0.29-RC2 - Denial of Service 1 DOS hyp3rlinx
2017-03-19   FTPShell Server 6.56 - 'ChangePassword' Buffer Overflow 2 DOS ScrR1pTK1dd13
2017-03-17   FTPShell Client 6.53 - 'Session name' Local Buffer Overflow 1 DOS ScrR1pTK1dd13
2017-03-16   Microsoft Edge 38.14393.0.0 - JavaScript Engine Use-After-Free 1 DOS Google Security Research
2017-03-16   Cerberus FTP Server 8.0.10.3 - 'MLST' Buffer Overflow (PoC) 1 DOS Nassim Asrir
2017-03-15   Microsoft Windows - 'LoadUvsTable()' Heap Buffer Overflow 1 DOS Hossein Lotfi
2017-03-15   Adobe Flash - AVC Header Slicing Heap Overflow 1 DOS Google Security Research
2017-03-15   Adobe Flash - ATF Planar Decompression Heap Overflow 0 DOS Google Security Research
2017-03-15   Adobe Flash - ATF Thumbnailing Heap Overflow 1 DOS Google Security Research
2017-03-15   Adobe Flash - MovieClip Attach init Object Use-After-Free 0 DOS Google Security Research
2017-03-15   Adobe Flash - Metadata Parsing Out-of-Bounds Read 0 DOS Google Security Research
2017-03-05   MikroTik Router - ARP Table OverFlow Denial Of Service 1 DOS FarazPajohan
2017-03-13   Cerberus FTP Server 8.0.10.1 - Denial of Service 1 DOS Peter Baris
2017-03-09   Livebox 3 Sagemcom SG30_sip-fr-5.15.8.1 - Denial of Service 0 DOS Quentin Olagne
2017-03-07   Evostream Media Server 1.7.1 (x64) - Denial of Service 0 DOS Peter Baris
2017-03-02   Conext ComBox 865-1058 - Denial of Service 1 DOS Mark Liapustin & Arik Kublanov
2017-02-28   Synchronet BBS 3.16c - Denial of Service 2 DOS Peter Baris
2017-02-28   BlueIris 4.5.1.4 - Denial of Service 2 DOS Peter Baris
2017-02-26   Linux Kernel 4.4.0 (Ubuntu) - DCCP Double-Free (PoC) 1 DOS Andrey Konovalov
2017-02-24   Microsoft Edge / Internet Explorer - 'HandleColumnBreakOnColumnSpanningElement' Type Confusion 1 DOS Google Security Research
2017-02-22   Google Chrome - 'layout' Out-of-Bounds Read 1 DOS Google Security Research
2017-02-22   EasyCom For PHP 4.0.0 - Denial of Service 0 DOS hyp3rlinx
2017-02-22   EasyCom For PHP 4.0.0 - Buffer Overflow (PoC) 0 DOS hyp3rlinx
2017-02-21   Adobe Flash - YUVPlane Decoding Heap Overflow 0 DOS Google Security Research
2017-02-21   Adobe Flash - Use-After-Free in Applying Bitmap Filter 1 DOS Google Security Research
2017-02-21   Adobe Flash - SWF Stack Corruption 1 DOS Google Security Research
2017-02-21   Adobe Flash - MP4 AMF Parsing Overflow 1 DOS Google Security Research
2017-02-21   Microsoft Office PowerPoint 2010 - GDI 'GDI32!ConvertDxArray' Insufficient Bounds Check 1 DOS Google Security Research
2017-02-21   Microsoft Office PowerPoint 2010 - MSO/OART Heap Out-of-Bounds Access 1 DOS Google Security Research
2017-02-21   Microsoft Office PowerPoint 2010 - 'MSO!Ordinal5429' Missing Length Check Heap Corruption 1 DOS Google Security Research
2017-02-15   Cisco ASA - WebVPN CIFS Handling Buffer Overflow 1 DOS Google Security Research
2017-02-15   GOM Player 2.3.10.5266 - '.fpx' Denial of Service 0 DOS Peter Baris
2017-02-15   NVIDIA Driver 375.70 - Buffer Overflow in Command Buffer Submission 1 DOS Google Security Research
2017-02-15   NVIDIA Driver 375.70 - DxgkDdiEscape 0x100008b Out-of-Bounds Read/Write 1 DOS Google Security Research
2017-02-15   Microsoft Windows - 'gdi32.dll' EMR_SETDIBITSTODEVICE Heap Out-of-Bounds Reads / Memory Disclosure 1 DOS Google Security Research
2017-02-14   Microsoft Edge - TypedArray.sort Use-After-Free (MS16-145) 1 DOS Google Security Research
2017-02-14   Google Android - android.util.MemoryIntArray Ashmem Race Conditions 1 DOS Google Security Research
2017-02-14   Google Android - Inter-process munmap in android.util.MemoryIntArray 1 DOS Google Security Research
2017-02-14   LG G4 - Touchscreen Driver write_log Kernel Read/Write 1 DOS Google Security Research
2017-02-14   LG G4 - lghashstorageserver Directory Traversal 1 DOS Google Security Research
2017-02-14   LG G4 - lgdrmserver Binder Service Multiple Race Conditions 1 DOS Google Security Research
2017-02-12   Linux Kernel 3.10.0 (CentOS 7) - Denial of Service 1 DOS FarazPajohan
2017-02-07   OpenBSD HTTPd < 6.0 - Memory Exhaustion Denial of Service 2 DOS PierreKimSec
2017-02-02   Google Android - 'rkp_set_init_page_ro' RKP Memory Corruption 1 DOS Google Security Research
2017-02-01   Microsoft Windows 10 - SMBv3 Tree Connect (PoC) 2 DOS laurent gaffie
2017-02-01   QNAP NVR/NAS Devices - Buffer Overflow (PoC) 2 DOS bashis
2017-02-01   Google Android - RKP Information Disclosure via s2-remapping Physical Ranges 2 DOS Google Security Research
2017-02-01   Apple WebKit - Type Confusion in RenderBox with Accessibility Enabled 2 DOS Google Security Research
2017-02-01   Apple WebKit - 'HTMLKeygenElement' Type Confusion 2 DOS Google Security Research
2017-02-01   Google Chrome - 'HTMLKeygenElement::shadowSelect()' Type Confusion 0 DOS Google Security Research
2017-02-01   Apple WebKit - 'HTMLFormElement::reset()' Use-After Free 1 DOS Google Security Research
2017-02-01   Google Android - Unprotected MSRs in EL1 RKP Privilege Escalation 1 DOS Google Security Research
2017-02-01   Google Android - 'cfp_ropp_new_key_reenc' / 'cfp_ropp_new_key' RKP Memory Corruption 1 DOS Google Security Research
2017-01-26   OpenSSL 1.1.0 - Remote Client Denial of Service 0 DOS Guido Vranken
2017-01-26   Apple macOS 10.12.1 / iOS Kernel - 'host_self_trap' Use-After-Free 0 DOS Google Security Research
2017-01-26   Apple macOS 10.12.1 / iOS Kernel - 'IOService::matchPassive' Use-After-Free 0 DOS Google Security Research
2017-01-26   Apple macOS 10.12.1 / iOS 10.2 - Kernel Userspace Pointer Memory Corruption 0 DOS Google Security Research
2017-01-26   Google Android - 'pm_qos' KASLR Bypass 0 DOS Google Security Research