Show filters
24 Total Results
Displaying 11-20 of 24
Sort by:
Attacker Value
Unknown

DSA-2018-147: Dell EMC Isilon OneFS and IsilonSD Edge Remote Process Crash Vuln…

Disclosure Date: September 18, 2018 (last updated November 27, 2024)
Dell EMC Isilon OneFS versions 7.1.1.x, 7.2.1.x, 8.0.0.x, 8.0.1.x, 8.1.0.x and 8.1.x prior to 8.1.2 and Dell EMC IsilonSD Edge versions 8.0.0.x, 8.0.1.x, 8.1.0.x and 8.1.x prior to 8.1.2 contain a remote process crash vulnerability. An unauthenticated remote attacker may potentially exploit this vulnerability to crash the isi_drive_d process by sending specially crafted input data to the affected system. This process will then be restarted.
0
Attacker Value
Unknown

CVE-2016-7069

Disclosure Date: September 11, 2018 (last updated November 27, 2024)
An issue has been found in dnsdist before 1.2.0 in the way EDNS0 OPT records are handled when parsing responses from a backend. When dnsdist is configured to add EDNS Client Subnet to a query, the response may contain an EDNS0 OPT record that has to be removed before forwarding the response to the initial client. On a 32-bit system, the pointer arithmetic used when parsing the received response to remove that record might trigger an undefined behavior leading to a crash.
0
Attacker Value
Unknown

CVE-2015-2004

Disclosure Date: March 29, 2018 (last updated November 26, 2024)
The GraceNote GNSDK SDK before SVN Changeset 1.1.7 for Android might allow attackers to execute arbitrary code by leveraging a finalize method in a Serializable class that improperly passes an attacker-controlled pointer to a native function.
0
Attacker Value
Unknown

CVE-2017-7560

Disclosure Date: September 13, 2017 (last updated November 26, 2024)
It was found that rhnsd PID files are created as world-writable that allows local attackers to fill the disks or to kill selected processes.
0
Attacker Value
Unknown

CVE-2017-7557

Disclosure Date: August 22, 2017 (last updated November 26, 2024)
dnsdist version 1.1.0 is vulnerable to a flaw in authentication mechanism for REST API potentially allowing CSRF attack.
0
Attacker Value
Unknown

CVE-2016-6173

Disclosure Date: February 09, 2017 (last updated November 26, 2024)
NSD before 4.1.11 allows remote DNS master servers to cause a denial of service (/tmp disk consumption and slave server crash) via a zone transfer with unlimited data.
0
Attacker Value
Unknown

CVE-2016-0907

Disclosure Date: May 30, 2016 (last updated November 25, 2024)
EMC Isilon OneFS 7.1.x and 7.2.x before 7.2.1.3 and 8.0.x before 8.0.0.1, and IsilonSD Edge OneFS 8.0.x before 8.0.0.1, does not require SMB signing within a DCERPC session over ncacn_np, which allows man-in-the-middle attackers to spoof SMB clients by modifying the client-server data stream, a similar issue to CVE-2016-2115.
0
Attacker Value
Unknown

CVE-2013-6774

Disclosure Date: March 31, 2014 (last updated October 05, 2023)
Untrusted search path vulnerability in the ChainsDD Superuser package 3.1.3 for Android 4.2.x and earlier, CyanogenMod/ClockWorkMod/Koush Superuser package 1.0.2.1 for Android 4.2.x and earlier, and Chainfire SuperSU package before 1.69 for Android 4.2.x and earlier allows attackers to load an arbitrary .jar file and gain privileges via a crafted BOOTCLASSPATH environment variable for a /system/xbin/su process. NOTE: another researcher was unable to reproduce this with ChainsDD Superuser.
0
Attacker Value
Unknown

CVE-2012-2978

Disclosure Date: July 27, 2012 (last updated October 04, 2023)
query.c in NSD 3.0.x through 3.0.8, 3.1.x through 3.1.1, and 3.2.x before 3.2.12 allows remote attackers to cause a denial of service (NULL pointer dereference and child process crash) via a crafted DNS packet.
0
Attacker Value
Unknown

CVE-2009-1755

Disclosure Date: May 22, 2009 (last updated October 04, 2023)
Off-by-one error in the packet_read_query_section function in packet.c in nsd 3.2.1, and process_query_section in query.c in nsd 2.3.7, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors that trigger a buffer overflow.
0