Show filters
511 Total Results
Displaying 141-150 of 511
Sort by:
Attacker Value
Unknown

CVE-2014-2523

Disclosure Date: March 24, 2014 (last updated October 05, 2023)
net/netfilter/nf_conntrack_proto_dccp.c in the Linux kernel through 3.13.6 uses a DCCP header pointer incorrectly, which allows remote attackers to cause a denial of service (system crash) or possibly execute arbitrary code via a DCCP packet that triggers a call to the (1) dccp_new, (2) dccp_packet, or (3) dccp_error function.
0
Attacker Value
Unknown

CVE-2014-0098

Disclosure Date: March 18, 2014 (last updated October 05, 2023)
The log_cookie function in mod_log_config.c in the mod_log_config module in the Apache HTTP Server before 2.4.8 allows remote attackers to cause a denial of service (segmentation fault and daemon crash) via a crafted cookie that is not properly handled during truncation.
0
Attacker Value
Unknown

CVE-2013-6438

Disclosure Date: March 18, 2014 (last updated October 05, 2023)
The dav_xml_get_cdata function in main/util.c in the mod_dav module in the Apache HTTP Server before 2.4.8 does not properly remove whitespace characters from CDATA sections, which allows remote attackers to cause a denial of service (daemon crash) via a crafted DAV WRITE request.
0
Attacker Value
Unknown

CVE-2013-6475

Disclosure Date: March 14, 2014 (last updated October 05, 2023)
Multiple integer overflows in (1) OPVPOutputDev.cxx and (2) oprs/OPVPSplash.cxx in the pdftoopvp filter in CUPS and cups-filters before 1.0.47 allow remote attackers to execute arbitrary code via a crafted PDF file, which triggers a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2013-6476

Disclosure Date: March 14, 2014 (last updated October 05, 2023)
The OPVPWrapper::loadDriver function in oprs/OPVPWrapper.cxx in the pdftoopvp filter in CUPS and cups-filters before 1.0.47 allows local users to gain privileges via a Trojan horse driver in the same directory as the PDF file.
0
Attacker Value
Unknown

CVE-2014-2270

Disclosure Date: March 14, 2014 (last updated October 05, 2023)
softmagic.c in file before 5.17 and libmagic allows context-dependent attackers to cause a denial of service (out-of-bounds memory access and crash) via crafted offsets in the softmagic of a PE executable.
0
Attacker Value
Unknown

CVE-2013-6474

Disclosure Date: March 14, 2014 (last updated October 05, 2023)
Heap-based buffer overflow in the pdftoopvp filter in CUPS and cups-filters before 1.0.47 allows remote attackers to execute arbitrary code via a crafted PDF file.
0
Attacker Value
Unknown

CVE-2013-4496

Disclosure Date: March 14, 2014 (last updated October 05, 2023)
Samba 3.x before 3.6.23, 4.0.x before 4.0.16, and 4.1.x before 4.1.6 does not enforce the password-guessing protection mechanism for all interfaces, which makes it easier for remote attackers to obtain access via brute-force ChangePasswordUser2 (1) SAMR or (2) RAP attempts.
0
Attacker Value
Unknown

CVE-2014-0101

Disclosure Date: March 11, 2014 (last updated October 05, 2023)
The sctp_sf_do_5_1D_ce function in net/sctp/sm_statefuns.c in the Linux kernel through 3.13.6 does not validate certain auth_enable and auth_capable fields before making an sctp_sf_authenticate call, which allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via an SCTP handshake with a modified INIT chunk and a crafted AUTH chunk before a COOKIE_ECHO chunk.
0
Attacker Value
Unknown

CVE-2011-3634

Disclosure Date: March 01, 2014 (last updated October 05, 2023)
methods/https.cc in apt before 0.8.11 accepts connections when the certificate host name fails validation and Verify-Host is enabled, which allows man-in-the-middle attackers to obtain repository credentials via unspecified vectors.
0