Show filters
335 Total Results
Displaying 151-160 of 335
Sort by:
Attacker Value
Unknown
CVE-2014-4207
Disclosure Date: July 17, 2014 (last updated October 05, 2023)
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier allows remote authenticated users to affect availability via vectors related to SROPTZR.
0
Attacker Value
Unknown
CVE-2014-2494
Disclosure Date: July 17, 2014 (last updated October 05, 2023)
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier allows remote authenticated users to affect availability via vectors related to ENARC.
0
Attacker Value
Unknown
CVE-2014-3468
Disclosure Date: June 05, 2014 (last updated October 05, 2023)
The asn1_get_bit_der function in GNU Libtasn1 before 3.6 does not properly report an error when a negative bit length is identified, which allows context-dependent attackers to cause out-of-bounds access via crafted ASN.1 data.
0
Attacker Value
Unknown
CVE-2014-3467
Disclosure Date: June 05, 2014 (last updated October 05, 2023)
Multiple unspecified vulnerabilities in the DER decoder in GNU Libtasn1 before 3.6, as used in GnuTLS, allow remote attackers to cause a denial of service (out-of-bounds read) via crafted ASN.1 data.
0
Attacker Value
Unknown
CVE-2014-3469
Disclosure Date: June 05, 2014 (last updated October 05, 2023)
The (1) asn1_read_value_type and (2) asn1_read_value functions in GNU Libtasn1 before 3.6 allows context-dependent attackers to cause a denial of service (NULL pointer dereference and crash) via a NULL value in an ivalue argument.
0
Attacker Value
Unknown
CVE-2013-1864
Disclosure Date: May 23, 2014 (last updated October 05, 2023)
The Portable Tool Library (aka PTLib) before 2.10.10, as used in Ekiga before 4.0.1, does not properly detect recursion during entity expansion, which allows remote attackers to cause a denial of service (memory and CPU consumption) via a crafted PXML document containing a large number of nested entity references, aka a "billion laughs attack."
0
Attacker Value
Unknown
CVE-2014-2497
Disclosure Date: March 21, 2014 (last updated October 05, 2023)
The gdImageCreateFromXpm function in gdxpm.c in libgd, as used in PHP 5.4.26 and earlier, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted color table in an XPM file.
0
Attacker Value
Unknown
CVE-2014-1502
Disclosure Date: March 19, 2014 (last updated October 05, 2023)
The (1) WebGL.compressedTexImage2D and (2) WebGL.compressedTexSubImage2D functions in Mozilla Firefox before 28.0 and SeaMonkey before 2.25 allow remote attackers to bypass the Same Origin Policy and render content in a different domain via unspecified vectors.
0
Attacker Value
Unknown
CVE-2014-1498
Disclosure Date: March 19, 2014 (last updated October 05, 2023)
The crypto.generateCRMFRequest method in Mozilla Firefox before 28.0 and SeaMonkey before 2.25 does not properly validate a certain key type, which allows remote attackers to cause a denial of service (application crash) via vectors that trigger generation of a key that supports the Elliptic Curve ec-dual-use algorithm.
0
Attacker Value
Unknown
CVE-2014-1493
Disclosure Date: March 19, 2014 (last updated October 05, 2023)
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
0