CVE-2014-9663
- EPSS 2.61%
- Published 08.02.2015 11:59:25
- Last modified 12.04.2025 10:46:40
The tt_cmap4_validate function in sfnt/ttcmap.c in FreeType before 2.5.4 validates a certain length field before that field's value is completely calculated, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly ...
CVE-2014-9661
- EPSS 4.95%
- Published 08.02.2015 11:59:23
- Last modified 12.04.2025 10:46:40
type42/t42parse.c in FreeType before 2.5.4 does not consider that scanning can be incomplete without triggering an error, which allows remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via a craf...
CVE-2014-9660
- EPSS 4.85%
- Published 08.02.2015 11:59:22
- Last modified 12.04.2025 10:46:40
The _bdf_parse_glyphs function in bdf/bdflib.c in FreeType before 2.5.4 does not properly handle a missing ENDCHAR record, which allows remote attackers to cause a denial of service (NULL pointer dereference) or possibly have unspecified other impact...
CVE-2014-9658
- EPSS 1.52%
- Published 08.02.2015 11:59:20
- Last modified 12.04.2025 10:46:40
The tt_face_load_kern function in sfnt/ttkern.c in FreeType before 2.5.4 enforces an incorrect minimum table length, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a craft...
CVE-2014-9657
- EPSS 1.52%
- Published 08.02.2015 11:59:19
- Last modified 12.04.2025 10:46:40
The tt_face_load_hdmx function in truetype/ttpload.c in FreeType before 2.5.4 does not establish a minimum record size, which allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a cr...
CVE-2014-9585
- EPSS 0.05%
- Published 09.01.2015 21:59:02
- Last modified 12.04.2025 10:46:40
The vdso_addr function in arch/x86/vdso/vma.c in the Linux kernel through 3.18.2 does not properly choose memory locations for the vDSO area, which makes it easier for local users to bypass the ASLR protection mechanism by guessing a location at the ...
CVE-2014-9584
- EPSS 0.13%
- Published 09.01.2015 21:59:01
- Last modified 12.04.2025 10:46:40
The parse_rock_ridge_inode_internal function in fs/isofs/rock.c in the Linux kernel before 3.18.2 does not validate a length value in the Extensions Reference (ER) System Use Field, which allows local users to obtain sensitive information from kernel...
CVE-2014-9529
- EPSS 0.11%
- Published 09.01.2015 21:59:00
- Last modified 12.04.2025 10:46:40
Race condition in the key_gc_unused_keys function in security/keys/gc.c in the Linux kernel through 3.18.2 allows local users to cause a denial of service (memory corruption or panic) or possibly have unspecified other impact via keyctl commands that...
- EPSS 18.54%
- Published 18.12.2014 15:59:00
- Last modified 12.04.2025 10:46:40
The mod_dav_svn Apache HTTPD server module in Apache Subversion 1.x before 1.7.19 and 1.8.x before 1.8.11 allows remote attackers to cause a denial of service (NULL pointer dereference and server crash) via a REPORT request for a resource that does n...
CVE-2014-8567
- EPSS 4.43%
- Published 14.11.2014 15:59:02
- Last modified 12.04.2025 10:46:40
The mod_auth_mellon module before 0.8.1 allows remote attackers to cause a denial of service (Apache HTTP server crash) via a crafted logout request that triggers a read of uninitialized data.