Show filters
700 Total Results
Displaying 11-20 of 700
Sort by:
Attacker Value
Unknown
CVE-2015-8651
Disclosure Date: December 28, 2015 (last updated July 02, 2024)
Integer overflow in Adobe Flash Player before 18.0.0.324 and 19.x and 20.x before 20.0.0.267 on Windows and OS X and before 11.2.202.559 on Linux, Adobe AIR before 20.0.0.233, Adobe AIR SDK before 20.0.0.233, and Adobe AIR SDK & Compiler before 20.0.0.233 allows attackers to execute arbitrary code via unspecified vectors.
1
Attacker Value
Unknown
CVE-2015-7645
Disclosure Date: October 15, 2015 (last updated July 17, 2024)
Adobe Flash Player 18.x through 18.0.0.252 and 19.x through 19.0.0.207 on Windows and OS X and 11.x through 11.2.202.535 on Linux allows remote attackers to execute arbitrary code via a crafted SWF file, as exploited in the wild in October 2015.
1
Attacker Value
Unknown
CVE-2015-5333
Disclosure Date: January 23, 2020 (last updated November 28, 2024)
Memory leak in the OBJ_obj2txt function in LibreSSL before 2.3.1 allows remote attackers to cause a denial of service (memory consumption) via a large number of ASN.1 object identifiers in X.509 certificates.
0
Attacker Value
Unknown
CVE-2015-5334
Disclosure Date: January 23, 2020 (last updated November 28, 2024)
Off-by-one error in the OBJ_obj2txt function in LibreSSL before 2.3.1 allows remote attackers to cause a denial of service (program crash) or possible execute arbitrary code via a crafted X.509 certificate, which triggers a stack-based buffer overflow. Note: this vulnerability exists because of an incorrect fix for CVE-2014-3508.
0
Attacker Value
Unknown
CVE-2015-2325
Disclosure Date: January 14, 2020 (last updated November 28, 2024)
The compile_branch function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code, cause a denial of service (out-of-bounds heap read and crash), or possibly have other unspecified impact via a regular expression with a group containing a forward reference repeated a large number of times within a repeated outer group that has a zero minimum quantifier.
0
Attacker Value
Unknown
CVE-2015-2326
Disclosure Date: January 14, 2020 (last updated November 28, 2024)
The pcre_compile2 function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code and cause a denial of service (out-of-bounds read) via regular expression with a group containing both a forward referencing subroutine call and a recursive back reference, as demonstrated by "((?+1)(\1))/".
0
Attacker Value
Unknown
CVE-2014-8179
Disclosure Date: December 17, 2019 (last updated November 27, 2024)
Docker Engine before 1.8.3 and CS Docker Engine before 1.6.2-CS7 does not properly validate and extract the manifest object from its JSON representation during a pull, which allows attackers to inject new attributes in a JSON object and bypass pull-by-digest validation.
0
Attacker Value
Unknown
CVE-2014-8178
Disclosure Date: December 17, 2019 (last updated November 27, 2024)
Docker Engine before 1.8.3 and CS Docker Engine before 1.6.2-CS7 do not use a globally unique identifier to store image layers, which makes it easier for attackers to poison the image cache via a crafted image in pull or push commands.
0
Attacker Value
Unknown
CVE-2016-1000104
Disclosure Date: December 03, 2019 (last updated November 27, 2024)
A security Bypass vulnerability exists in the FcgidPassHeader Proxy in mod_fcgid through 2016-07-07.
0
Attacker Value
Unknown
CVE-2016-4983
Disclosure Date: November 05, 2019 (last updated November 27, 2024)
A postinstall script in the dovecot rpm allows local users to read the contents of newly created SSL/TLS key files.
0