İçeriğe atla
Noroxi

mageia kayıtları

mageia üreticisine ait 22 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
2 · %9,1
Silahlaştırılmış
3 · %13,6
Pre-auth RCE
4
Düzeltme kaydı olan
%95,5
Yayından KEV’e ortanca
2683 gün

Tüm kayıtlar

22 kayıt
  • GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attac

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    gnu · bash24 Eyl 2014

  • GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function definitions in the values of environment variabl

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    gnu · bash24 Eyl 2014

  • CVE-2014-3566
    43Planlayın

    The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man

    DüşükCVSS 3,4SilahlaştırılmışEPSS %100

    openssl · openssl14 Eki 2014

  • CVE-2014-9087
    32İzleyin

    Integer underflow in the ksba_oid_to_str function in Libksba before 1.3.2, as used in GnuPG, allows remote attackers to cause a denial of se

    YüksekCVSS 7,5İstismar yokEPSS %6

    gnupg · libksba1 Ara 2014

  • CVE-2013-4159
    31İzleyin

    ctdb before 2.3 in OpenSUSE 12.3 and 13.1 does not create temporary files securely, which has unspecified impact related to "several temp fi

    YüksekCVSS 7,5İstismar yokEPSS %2

    opensuse · opensuse6 Ağu 2014

  • CVE-2014-3429
    28İzleyin

    IPython Notebook 0.12 through 1.x before 1.2 does not validate the origin of websocket requests, which allows remote attackers to execute ar

    OrtaCVSS 6,8İstismar yokEPSS %5

    ipython · ipython notebook7 Ağu 2014

  • CVE-2014-8104
    28İzleyin

    OpenVPN 2.x before 2.0.11, 2.1.x, 2.2.x before 2.2.3, and 2.3.x before 2.3.6 allows remote authenticated users to cause a denial of service

    OrtaCVSS 6,8İstismar yokEPSS %3

    openvpn · openvpn3 Ara 2014

  • CVE-2014-5461
    24İzleyin

    Buffer overflow in the vararg functions in ldo.c in Lua 5.1 through 5.2.x before 5.2.3 allows context-dependent attackers to cause a denial

    OrtaCVSS 5,0İstismar yokEPSS %12

    lua · lua4 Eyl 2014

  • CVE-2014-9116
    23İzleyin

    The write_one_header function in mutt 1.5.23 does not properly handle newline characters at the beginning of a header, which allows remote a

    OrtaCVSS 5,0İstismar yokEPSS %10

    mutt · mutt2 Ara 2014

  • CVE-2014-9637
    23İzleyin

    GNU patch 2.7.2 and earlier allows remote attackers to cause a denial of service (memory consumption and segmentation fault) via a crafted d

    OrtaCVSS 5,5İstismar yokEPSS %2

    gnu · patch25 Ağu 2017

  • CVE-2014-8117
    22İzleyin

    softmagic.c in file before 5.21 does not properly limit recursion, which allows remote attackers to cause a denial of service (CPU consumpti

    OrtaCVSS 5,0İstismar yokEPSS %6

    file project · file17 Ara 2014

  • CVE-2015-2189
    21İzleyin

    Off-by-one error in the pcapng_read function in wiretap/pcapng.c in the pcapng file parser in Wireshark 1.10.x before 1.10.13 and 1.12.x bef

    OrtaCVSS 5,0İstismar yokEPSS %5

    wireshark · wireshark7 Mar 2015

  • CVE-2014-8116
    21İzleyin

    The ELF parser (readelf.c) in file before 5.21 allows remote attackers to cause a denial of service (CPU consumption or crash) via a large n

    OrtaCVSS 5,0İstismar yokEPSS %4

    file project · file17 Ara 2014

  • CVE-2015-2188
    21İzleyin

    epan/dissectors/packet-wcp.c in the WCP dissector in Wireshark 1.10.x before 1.10.13 and 1.12.x before 1.12.4 does not properly initialize a

    OrtaCVSS 5,0İstismar yokEPSS %4

    wireshark · wireshark7 Mar 2015

  • CVE-2014-7204
    21İzleyin

    jscript.c in Exuberant Ctags 5.8 allows remote attackers to cause a denial of service (infinite loop and CPU and disk consumption) via a cra

    OrtaCVSS 5,0İstismar yokEPSS %4

    canonical · ubuntu linux7 Eki 2014

  • CVE-2015-2191
    21İzleyin

    Integer overflow in the dissect_tnef function in epan/dissectors/packet-tnef.c in the TNEF dissector in Wireshark 1.10.x before 1.10.13 and

    OrtaCVSS 5,0İstismar yokEPSS %4

    wireshark · wireshark7 Mar 2015

  • CVE-2014-1829
    21İzleyin

    Requests (aka python-requests) before 2.3.0 allows remote servers to obtain a netrc password by reading the Authorization header in a redire

    OrtaCVSS 5,0İstismar yokEPSS %2

    python · requests15 Eki 2014

  • CVE-2014-9253
    18İzleyin

    The default file type whitelist configuration in conf/mime.conf in the Media Manager in DokuWiki before 2014-09-29b allows remote attackers

    OrtaCVSS 4,3İstismar yokEPSS %2

    dokuwiki · dokuwiki17 Ara 2014

  • CVE-2015-0236
    15İzleyin

    libvirt before 1.2.12 allow remote authenticated users to obtain the VNC password by using the VIR_DOMAIN_XML_SECURE flag with a crafted (1)

    DüşükCVSS 3,5İstismar yokEPSS %2

    mageia · mageia29 Oca 2015

  • CVE-2014-2524
    13İzleyin

    The _rl_tropen function in util.c in GNU readline before 6.3 patch 3 allows local users to create or overwrite arbitrary files via a symlink

    DüşükCVSS 3,3İstismar yokEPSS %0

    gnu · readline20 Ağu 2014

  • CVE-2014-3532
    8İzleyin

    dbus 1.3.0 before 1.6.22 and 1.8.x before 1.8.6, when running on Linux 2.6.37-rc4 or later, allows local users to cause a denial of service

    DüşükCVSS 2,1İstismar yokEPSS %0

    linux · linux kernel19 Tem 2014

  • CVE-2014-8136
    8İzleyin

    The (1) qemuDomainMigratePerform and (2) qemuDomainMigrateFinish2 functions in qemu/qemu_driver.c in libvirt do not unlock the domain when a

    DüşükCVSS 2,1İstismar yokEPSS %0

    mageia · mageia19 Ara 2014