Show filters
91 Total Results
Displaying 61-70 of 91
Sort by:
Attacker Value
Unknown

CVE-2015-0973

Disclosure Date: January 18, 2015 (last updated October 05, 2023)
Buffer overflow in the png_read_IDAT_data function in pngrutil.c in libpng before 1.5.21 and 1.6.x before 1.6.16 allows context-dependent attackers to execute arbitrary code via IDAT data with a large width, a different vulnerability than CVE-2014-9495.
0
Attacker Value
Unknown

CVE-2014-9496

Disclosure Date: January 16, 2015 (last updated October 05, 2023)
The sd2_parse_rsrc_fork function in sd2.c in libsndfile allows attackers to have unspecified impact via vectors related to a (1) map offset or (2) rsrc marker, which triggers an out-of-bounds read.
0
Attacker Value
Unknown

CVE-2014-9601

Disclosure Date: January 16, 2015 (last updated October 05, 2023)
Pillow before 2.7.0 allows remote attackers to cause a denial of service via a compressed text chunk in a PNG image that has a large size when it is decompressed.
0
Attacker Value
Unknown

CVE-2015-0564

Disclosure Date: January 10, 2015 (last updated October 05, 2023)
Buffer underflow in the ssl_decrypt_record function in epan/dissectors/packet-ssl-utils.c in Wireshark 1.10.x before 1.10.12 and 1.12.x before 1.12.3 allows remote attackers to cause a denial of service (application crash) via a crafted packet that is improperly handled during decryption of an SSL session.
0
Attacker Value
Unknown

CVE-2015-0561

Disclosure Date: January 10, 2015 (last updated October 05, 2023)
asn1/lpp/lpp.cnf in the LPP dissector in Wireshark 1.10.x before 1.10.12 and 1.12.x before 1.12.3 does not validate a certain index value, which allows remote attackers to cause a denial of service (out-of-bounds memory access and application crash) via a crafted packet.
0
Attacker Value
Unknown

CVE-2014-8145

Disclosure Date: December 31, 2014 (last updated October 05, 2023)
Multiple heap-based buffer overflows in Sound eXchange (SoX) 14.4.1 and earlier allow remote attackers to have unspecified impact via a crafted WAV file to the (1) start_read or (2) AdpcmReadBlock function.
0
Attacker Value
Unknown

CVE-2014-5353

Disclosure Date: December 16, 2014 (last updated October 05, 2023)
The krb5_ldap_get_password_policy_from_dn function in plugins/kdb/ldap/libkdb_ldap/ldap_pwd_policy.c in MIT Kerberos 5 (aka krb5) before 1.13.1, when the KDC uses LDAP, allows remote authenticated users to cause a denial of service (daemon crash) via a successful LDAP query with no results, as demonstrated by using an incorrect object type for a password policy.
0
Attacker Value
Unknown

CVE-2014-8964

Disclosure Date: December 16, 2014 (last updated October 05, 2023)
Heap-based buffer overflow in PCRE 8.36 and earlier allows remote attackers to cause a denial of service (crash) or have other unspecified impact via a crafted regular expression, related to an assertion that allows zero repeats.
0
Attacker Value
Unknown

CVE-2014-8124

Disclosure Date: December 12, 2014 (last updated October 05, 2023)
OpenStack Dashboard (Horizon) before 2014.1.3 and 2014.2.x before 2014.2.1 does not properly handle session records when using a db or memcached session engine, which allows remote attackers to cause a denial of service via a large number of requests to the login page.
0
Attacker Value
Unknown

CVE-2014-8094

Disclosure Date: December 10, 2014 (last updated October 05, 2023)
Integer overflow in the ProcDRI2GetBuffers function in the DRI2 extension in X.Org Server (aka xserver and xorg-server) 1.7.0 through 1.16.x before 1.16.3 allows remote authenticated users to cause a denial of service (crash) or possibly execute arbitrary code via a crafted request, which triggers an out-of-bounds read or write.
0