Redhat

Enterprise Linux Hpc Node Eus

81 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 28.15%
  • Published 09.06.2015 18:59:02
  • Last modified 12.04.2025 10:46:40

Multiple stack-based buffer overflows in the phar_set_inode function in phar_internal.h in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8 allow remote attackers to execute arbitrary code via a crafted length value in a (1) tar, (2) ph...

Exploit
  • EPSS 18.41%
  • Published 09.06.2015 18:59:01
  • Last modified 12.04.2025 10:46:40

The phar_parse_metadata function in ext/phar/phar.c in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8 allows remote attackers to cause a denial of service (heap metadata corruption) or possibly have unspecified other impact via a craf...

Exploit
  • EPSS 9.68%
  • Published 09.06.2015 18:59:00
  • Last modified 12.04.2025 10:46:40

ext/phar/phar.c in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8 allows remote attackers to obtain sensitive information from process memory or cause a denial of service (buffer over-read and application crash) via a crafted length v...

  • EPSS 5.38%
  • Published 28.04.2015 14:59:01
  • Last modified 12.04.2025 10:46:40

Heap-based buffer overflow in wpa_supplicant 1.0 through 2.4 allows remote attackers to cause a denial of service (crash), read memory, or possibly execute arbitrary code via crafted SSID information in a management frame when creating or updating P2...

Exploit
  • EPSS 36.43%
  • Published 30.03.2015 10:59:15
  • Last modified 12.04.2025 10:46:40

Use-after-free vulnerability in the process_nested_data function in ext/standard/var_unserializer.re in PHP before 5.4.39, 5.5.x before 5.5.23, and 5.6.x before 5.6.7 allows remote attackers to execute arbitrary code via a crafted unserialize call th...

Exploit
  • EPSS 7.24%
  • Published 30.03.2015 10:59:14
  • Last modified 12.04.2025 10:46:40

The move_uploaded_file implementation in ext/standard/basic_functions.c in PHP before 5.4.39, 5.5.x before 5.5.23, and 5.6.x before 5.6.7 truncates a pathname upon encountering a \x00 character, which allows remote attackers to bypass intended extens...

Exploit
  • EPSS 17.29%
  • Published 30.03.2015 10:59:10
  • Last modified 12.04.2025 10:46:40

Use-after-free vulnerability in the phar_rename_archive function in phar_object.c in PHP before 5.5.22 and 5.6.x before 5.6.6 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger an a...

Exploit
  • EPSS 2.11%
  • Published 08.02.2015 11:59:36
  • Last modified 12.04.2025 10:46:40

bdf/bdflib.c in FreeType before 2.5.4 identifies property names by only verifying that an initial substring is present, which allows remote attackers to discover heap pointer values and bypass the ASLR protection mechanism via a crafted BDF font.

Exploit
  • EPSS 5.12%
  • Published 08.02.2015 11:59:35
  • Last modified 12.04.2025 10:46:40

The Mac_Read_POST_Resource function in base/ftobjs.c in FreeType before 2.5.4 proceeds with adding to length values without validating the original values, which allows remote attackers to cause a denial of service (integer overflow and heap-based bu...

Exploit
  • EPSS 4.22%
  • Published 08.02.2015 11:59:34
  • Last modified 12.04.2025 10:46:40

Integer signedness error in the Mac_Read_POST_Resource function in base/ftobjs.c in FreeType before 2.5.4 allows remote attackers to cause a denial of service (heap-based buffer overflow) or possibly have unspecified other impact via a crafted Mac fo...