2018 CVE Vulnerabilities
17,817 CVEs published in 2018.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2018-14739 | — | — | 1.3% | Jul 30, 2018 | An issue was discovered in libpbc.a in cloudwu PBC through 2017-03-02. A SEGV can occur in pbc_pattern_set_default in pa... |
| CVE-2018-14738 | — | — | 1.3% | Jul 30, 2018 | An issue was discovered in libpbc.a in cloudwu PBC through 2017-03-02. A SEGV can occur in pbc_rmessage_message in rmess... |
| CVE-2018-14737 | — | — | 1.4% | Jul 30, 2018 | An issue was discovered in libpbc.a in cloudwu PBC through 2017-03-02. A NULL pointer dereference can occur in pbc_wmess... |
| CVE-2018-14736 | — | — | 1.4% | Jul 30, 2018 | An issue was discovered in libpbc.a in cloudwu PBC through 2017-03-02. A buffer over-read can occur in pbc_wmessage_stri... |
| CVE-2018-14734 | — | — | 0.6% | Jul 29, 2018 | drivers/infiniband/core/ucma.c in the Linux kernel through 4.17.11 allows ucma_leave_multicast to access a certain data ... |
| CVE-2018-14686 | — | — | 0.7% | Jul 28, 2018 | system/edit_book.php in XYCMS 1.7 has stored XSS via a crafted add_do.php request, related to add_book.php. |
| CVE-2018-14685 | — | — | 2.1% | Jul 28, 2018 | The add function in www/Lib/Lib/Action/Admin/TplAction.class.php in Gxlcms v1.1.4 allows remote attackers to read arbitr... |
| CVE-2018-14682 | — | — | 3.8% | Jul 28, 2018 | An issue was discovered in mspack/chmd.c in libmspack before 0.7alpha. There is an off-by-one error in the TOLOWER() mac... |
| CVE-2018-14681 | — | — | 3.8% | Jul 28, 2018 | An issue was discovered in kwajd_read_headers in mspack/kwajd.c in libmspack before 0.7alpha. Bad KWAJ file header exten... |
| CVE-2018-14680 | — | — | 3.8% | Jul 28, 2018 | An issue was discovered in mspack/chmd.c in libmspack before 0.7alpha. It does not reject blank CHM filenames. |
| CVE-2018-14679 | — | — | 3.3% | Jul 28, 2018 | An issue was discovered in mspack/chmd.c in libmspack before 0.7alpha. There is an off-by-one error in the CHM PMGI/PMGL... |
| CVE-2018-14678 | HIGH | 7.8 | 0.4% | Jul 28, 2018 | An issue was discovered in the Linux kernel through 4.17.11, as used in Xen through 4.11.x. The xen_failsafe_callback en... |
| CVE-2018-0498 | — | — | 0.4% | Jul 28, 2018 | ARM mbed TLS before 2.12.0, before 2.7.5, and before 2.1.14 allows local users to achieve partial plaintext recovery (fo... |
| CVE-2018-0497 | — | — | 2.3% | Jul 28, 2018 | ARM mbed TLS before 2.12.0, before 2.7.5, and before 2.1.14 allows remote attackers to achieve partial plaintext recover... |
| CVE-2018-10882 | MEDIUM | 4.8 | 0.7% | Jul 27, 2018 | A flaw was found in the Linux kernel's ext4 filesystem. A local user can cause an out-of-bound write in in fs/jbd2/trans... |
| CVE-2018-1056 | HIGH | 7.8 | 1.4% | Jul 27, 2018 | An out-of-bounds heap buffer read flaw was found in the way advancecomp before 2.1-2018/02 handled processing of ZIP fil... |
| CVE-2018-10862 | — | — | 1.3% | Jul 27, 2018 | WildFly Core before version 6.0.0.Alpha3 does not properly validate file paths in .war archives, allowing for the extrac... |
| CVE-2018-6686 | MEDIUM | 6.6 | 0.2% | Jul 27, 2018 | Authentication Bypass vulnerability in TPM autoboot in McAfee Drive Encryption (MDE) 7.1.0 and above allows physically p... |
| CVE-2018-14617 | — | — | 2.5% | Jul 27, 2018 | An issue was discovered in the Linux kernel through 4.17.10. There is a NULL pointer dereference and panic in hfsplus_lo... |
| CVE-2018-14616 | — | — | 2.2% | Jul 27, 2018 | An issue was discovered in the Linux kernel through 4.17.10. There is a NULL pointer dereference in fscrypt_do_page_cryp... |
| CVE-2018-14615 | — | — | 2.3% | Jul 27, 2018 | An issue was discovered in the Linux kernel through 4.17.10. There is a buffer overflow in truncate_inline_inode() in fs... |
| CVE-2018-14614 | — | — | 1.9% | Jul 27, 2018 | An issue was discovered in the Linux kernel through 4.17.10. There is an out-of-bounds access in __remove_dirty_segment(... |
| CVE-2018-14613 | — | — | 2.5% | Jul 27, 2018 | An issue was discovered in the Linux kernel through 4.17.10. There is an invalid pointer dereference in io_ctl_map_page(... |
| CVE-2018-14612 | — | — | 2.6% | Jul 27, 2018 | An issue was discovered in the Linux kernel through 4.17.10. There is an invalid pointer dereference in btrfs_root_node(... |
| CVE-2018-14611 | — | — | 2.5% | Jul 27, 2018 | An issue was discovered in the Linux kernel through 4.17.10. There is a use-after-free in try_merge_free_space() when mo... |
Check if your code is affected by 2018 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now