Show filters
1,474 Total Results
Displaying 31-40 of 1,474
Sort by:
Attacker Value
Unknown
CVE-2006-7246
Disclosure Date: January 27, 2020 (last updated February 21, 2025)
NetworkManager 0.9.x does not pin a certificate's subject to an ESSID when 802.11X authentication is used.
0
Attacker Value
Unknown
CVE-2015-5333
Disclosure Date: January 23, 2020 (last updated February 21, 2025)
Memory leak in the OBJ_obj2txt function in LibreSSL before 2.3.1 allows remote attackers to cause a denial of service (memory consumption) via a large number of ASN.1 object identifiers in X.509 certificates.
0
Attacker Value
Unknown
CVE-2015-5334
Disclosure Date: January 23, 2020 (last updated February 21, 2025)
Off-by-one error in the OBJ_obj2txt function in LibreSSL before 2.3.1 allows remote attackers to cause a denial of service (program crash) or possible execute arbitrary code via a crafted X.509 certificate, which triggers a stack-based buffer overflow. Note: this vulnerability exists because of an incorrect fix for CVE-2014-3508.
0
Attacker Value
Unknown
CVE-2015-2325
Disclosure Date: January 14, 2020 (last updated February 21, 2025)
The compile_branch function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code, cause a denial of service (out-of-bounds heap read and crash), or possibly have other unspecified impact via a regular expression with a group containing a forward reference repeated a large number of times within a repeated outer group that has a zero minimum quantifier.
0
Attacker Value
Unknown
CVE-2015-2326
Disclosure Date: January 14, 2020 (last updated February 21, 2025)
The pcre_compile2 function in PCRE before 8.37 allows context-dependent attackers to compile incorrect code and cause a denial of service (out-of-bounds read) via regular expression with a group containing both a forward referencing subroutine call and a recursive back reference, as demonstrated by "((?+1)(\1))/".
0
Attacker Value
Unknown
CVE-2012-2142
Disclosure Date: January 09, 2020 (last updated February 21, 2025)
The error function in Error.cc in poppler before 0.21.4 allows remote attackers to execute arbitrary commands via a PDF containing an escape sequence for a terminal emulator.
0
Attacker Value
Unknown
CVE-2012-2736
Disclosure Date: December 26, 2019 (last updated November 27, 2024)
In NetworkManager 0.9.2.0, when a new wireless network was created with WPA/WPA2 security in AdHoc mode, it created an open/insecure network.
0
Attacker Value
Unknown
CVE-2014-8179
Disclosure Date: December 17, 2019 (last updated November 27, 2024)
Docker Engine before 1.8.3 and CS Docker Engine before 1.6.2-CS7 does not properly validate and extract the manifest object from its JSON representation during a pull, which allows attackers to inject new attributes in a JSON object and bypass pull-by-digest validation.
0
Attacker Value
Unknown
CVE-2014-8178
Disclosure Date: December 17, 2019 (last updated November 27, 2024)
Docker Engine before 1.8.3 and CS Docker Engine before 1.6.2-CS7 do not use a globally unique identifier to store image layers, which makes it easier for attackers to poison the image cache via a crafted image in pull or push commands.
0
Attacker Value
Unknown
CVE-2014-3495
Disclosure Date: December 13, 2019 (last updated November 27, 2024)
duplicity 0.6.24 has improper verification of SSL certificates
0