Количество 25 045
Количество 25 045
CVE-2015-4646
CVE-2015-4645
CVE-2015-3717
CVE-2015-3631
CVE-2015-3630
CVE-2015-3627
CVE-2015-3416
The sqlite3VXPrintf function in printf.c in SQLite before 3.8.9 does not properly handle precision and width values during floating-point conversions, which allows context-dependent attackers to cause a denial of service (integer overflow and stack-based buffer overflow) or possibly have unspecified other impact via large integers in a crafted printf function call in a SELECT statement.
CVE-2015-3310
Buffer overflow in the rc_mksid function in plugins/radius/util.c in Paul's PPP Package (ppp) 2.4.6 and earlier, when the PID for pppd is greater than 65535, allows remote attackers to cause a denial of service (crash) via a start accounting message to the RADIUS server.
CVE-2015-3276
CVE-2015-2987
CVE-2015-2704
realmd allows remote attackers to inject arbitrary configurations in to sssd.conf and smb.conf
CVE-2015-2158
Off-by-one error in the pngcrush_measure_idat function in pngcrush.c in pngcrush before 1.7.84 allows remote attackers to cause a denial of service
CVE-2015-20107
In Python (aka CPython) up to 3.10.8 the mailcap module does not add escape characters into commands discovered in the system mailcap file. This may allow attackers to inject shell commands into applications that call mailcap.findmatch with untrusted input (if they lack validation of user-provided filenames or arguments). The fix is also back-ported to 3.7 3.8 3.9
CVE-2015-1473
The GNU C Library (aka glibc or libc6) allows context-dependent attackers to cause a denial of service
CVE-2015-1029
The puppetlabs-stdlib module 2.1 through 3.0 and 4.1.0 through 4.5.x before 4.5.1 for Puppet 2.8.8 and earlier allows remote authenticated users to gain privileges or obtain sensitive information by prepopulating the fact cache.
CVE-2014-9940
The regulator_ena_gpio_free function in drivers/regulator/core.c in the Linux kernel before 3.19 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted application.
CVE-2014-9913
CVE-2014-9639
CVE-2014-9638
CVE-2014-9636
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVSS3: 7.5 | 7% Низкий | около 5 лет назад | ||
CVSS3: 5.5 | 3% Низкий | около 5 лет назад | ||
5% Низкий | почти 6 лет назад | |||
1% Низкий | около 5 лет назад | |||
1% Низкий | около 5 лет назад | |||
1% Низкий | около 5 лет назад | |||
CVE-2015-3416 The sqlite3VXPrintf function in printf.c in SQLite before 3.8.9 does not properly handle precision and width values during floating-point conversions, which allows context-dependent attackers to cause a denial of service (integer overflow and stack-based buffer overflow) or possibly have unspecified other impact via large integers in a crafted printf function call in a SELECT statement. | 6% Низкий | 11 месяцев назад | ||
CVE-2015-3310 Buffer overflow in the rc_mksid function in plugins/radius/util.c in Paul's PPP Package (ppp) 2.4.6 and earlier, when the PID for pppd is greater than 65535, allows remote attackers to cause a denial of service (crash) via a start accounting message to the RADIUS server. | 5% Низкий | 12 месяцев назад | ||
CVSS3: 7.5 | 5% Низкий | почти 6 лет назад | ||
1% Низкий | почти 6 лет назад | |||
CVE-2015-2704 realmd allows remote attackers to inject arbitrary configurations in to sssd.conf and smb.conf | 3% Низкий | 10 месяцев назад | ||
CVE-2015-2158 Off-by-one error in the pngcrush_measure_idat function in pngcrush.c in pngcrush before 1.7.84 allows remote attackers to cause a denial of service | CVSS3: 7.8 | 3% Низкий | больше 1 года назад | |
CVE-2015-20107 In Python (aka CPython) up to 3.10.8 the mailcap module does not add escape characters into commands discovered in the system mailcap file. This may allow attackers to inject shell commands into applications that call mailcap.findmatch with untrusted input (if they lack validation of user-provided filenames or arguments). The fix is also back-ported to 3.7 3.8 3.9 | CVSS3: 7.6 | 7% Низкий | больше 4 лет назад | |
CVE-2015-1473 The GNU C Library (aka glibc or libc6) allows context-dependent attackers to cause a denial of service | 2% Низкий | больше 1 года назад | ||
CVE-2015-1029 The puppetlabs-stdlib module 2.1 through 3.0 and 4.1.0 through 4.5.x before 4.5.1 for Puppet 2.8.8 and earlier allows remote authenticated users to gain privileges or obtain sensitive information by prepopulating the fact cache. | 2% Низкий | больше 1 года назад | ||
CVE-2014-9940 The regulator_ena_gpio_free function in drivers/regulator/core.c in the Linux kernel before 3.19 allows local users to gain privileges or cause a denial of service (use-after-free) via a crafted application. | 2% Низкий | почти 3 года назад | ||
CVSS3: 4 | 1% Низкий | почти 6 лет назад | ||
4% Низкий | больше 4 лет назад | |||
4% Низкий | больше 4 лет назад | |||
12% Средний | почти 6 лет назад |
Уязвимостей на страницу