Show filters
298 Total Results
Displaying 41-50 of 298
Sort by:
Attacker Value
Unknown

CVE-2013-4365

Disclosure Date: October 17, 2013 (last updated October 05, 2023)
Heap-based buffer overflow in the fcgid_header_bucket_read function in fcgid_bucket.c in the mod_fcgid module before 2.3.9 for the Apache HTTP Server allows remote attackers to have an unspecified impact via unknown vectors.
0
Attacker Value
Unknown

CVE-2013-2190

Disclosure Date: October 17, 2013 (last updated October 05, 2023)
The translate_hierarchy_event function in x11/clutter-device-manager-xi2.c in Clutter, when resuming the system, does not properly handle XIQueryDevice errors when a device has "disappeared," which causes the gnome-shell to crash and allows physically proximate attackers to access the previous gnome-shell session via unspecified vectors.
0
Attacker Value
Unknown

CVE-2013-4389

Disclosure Date: October 17, 2013 (last updated October 05, 2023)
Multiple format string vulnerabilities in log_subscriber.rb files in the log subscriber component in Action Mailer in Ruby on Rails 3.x before 3.2.15 allow remote attackers to cause a denial of service via a crafted e-mail address that is improperly handled during construction of a log message.
0
Attacker Value
Unknown

CVE-2013-2927

Disclosure Date: October 16, 2013 (last updated October 05, 2023)
Use-after-free vulnerability in the HTMLFormElement::prepareForSubmission function in core/html/HTMLFormElement.cpp in Blink, as used in Google Chrome before 30.0.1599.101, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to submission for FORM elements.
0
Attacker Value
Unknown

CVE-2013-4288

Disclosure Date: October 03, 2013 (last updated October 05, 2023)
Race condition in PolicyKit (aka polkit) allows local users to bypass intended PolicyKit restrictions and gain privileges by starting a setuid or pkexec process before the authorization check is performed, related to (1) the polkit_unix_process_new API function, (2) the dbus API, or (3) the --process (unix-process) option for authorization to pkcheck.
0
Attacker Value
Unknown

CVE-2013-2919

Disclosure Date: October 02, 2013 (last updated October 05, 2023)
Google V8, as used in Google Chrome before 30.0.1599.66, allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors.
0
Attacker Value
Unknown

CVE-2013-2217

Disclosure Date: September 23, 2013 (last updated October 05, 2023)
cache.py in Suds 0.4, when tempdir is set to None, allows local users to redirect SOAP queries and possibly have other unspecified impact via a symlink attack on a cache file with a predictable name in /tmp/suds/.
0
Attacker Value
Unknown

CVE-2013-4132

Disclosure Date: September 16, 2013 (last updated October 05, 2023)
KDE-Workspace 4.10.5 and earlier does not properly handle the return value of the glibc 2.17 crypt and pw_encrypt functions, which allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via (1) an invalid salt or a (2) DES or (3) MD5 encrypted password, when FIPS-140 is enable, to KDM or an (4) invalid password to KCheckPass.
0
Attacker Value
Unknown

CVE-2013-5018

Disclosure Date: August 28, 2013 (last updated October 05, 2023)
The is_asn1 function in strongSwan 4.1.11 through 5.0.4 does not properly validate the return value of the asn1_length function, which allows remote attackers to cause a denial of service (segmentation fault) via a (1) XAuth username, (2) EAP identity, or (3) PEM encoded file that starts with a 0x04, 0x30, or 0x31 character followed by an ASN.1 length value that triggers an integer overflow.
0
Attacker Value
Unknown

CVE-2013-2145

Disclosure Date: August 19, 2013 (last updated October 05, 2023)
The cpansign verify functionality in the Module::Signature module before 0.72 for Perl allows attackers to bypass the signature check and execute arbitrary code via a SIGNATURE file with a "special unknown cipher" that references an untrusted module in Digest/.
0