ZeroHour

Vulnerabilities

7 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2019-1010190
+1 in the same advisory: …1010189
mgetty prior to 1.2.1 is affected by:

mgetty prior to 1.2.1 is affected by: out-of-bounds read. The impact is: DoS, the program may crash if the memory is not mapped. The component is: putwhitespan() in g3/pbm2g3.c. The attack vector is: Local, the victim must open a specially crafted file. The fixed version is: 1.2.1.

NVD description · AI analysis pending
5.5<1%
  • mgetty project mgetty
CVE-2018-16741
+4 in the same advisory: …16744 …16745 …16743 …16742
An issue was discovered in mgetty before 1.2.1.

An issue was discovered in mgetty before 1.2.1. In fax/faxq-helper.c, the function do_activate() does not properly sanitize shell metacharacters to prevent command injection. It is possible to use the ||, &&, or > characters within a file created by the "faxq-helper activate " command.

NVD description · AI analysis pending
7.81% PoC
  • mgetty project mgetty
  • mgetty project debian linux