CVE-2014-6051
- EPSS 6.61%
- Published 30.09.2014 16:55:07
- Last modified 12.04.2025 10:46:40
Integer overflow in the MallocFrameBuffer function in vncviewer.c in LibVNCServer 0.9.9 and earlier allows remote VNC servers to cause a denial of service (crash) and possibly execute arbitrary code via an advertisement for a large screen size, which...
CVE-2014-6055
- EPSS 11.16%
- Published 30.09.2014 16:55:07
- Last modified 12.04.2025 10:46:40
Multiple stack-based buffer overflows in the File Transfer feature in rfbserver.c in LibVNCServer 0.9.9 and earlier allow remote authenticated users to cause a denial of service (crash) and possibly execute arbitrary code via a (1) long file or (2) d...
- EPSS 4.78%
- Published 19.08.2014 18:55:02
- Last modified 12.04.2025 10:46:40
Apache Subversion 1.0.0 through 1.7.x before 1.7.17 and 1.8.x before 1.8.10 uses an MD5 hash of the URL and authentication realm to store cached credentials, which makes it easier for remote servers to obtain the credentials via a crafted authenticat...
- EPSS 12.61%
- Published 20.07.2014 11:12:50
- Last modified 12.04.2025 10:46:40
MIT Kerberos 5 (aka krb5) before 1.12.2 allows remote attackers to cause a denial of service (buffer over-read and application crash) by injecting invalid tokens into a GSSAPI application session.
CVE-2014-0196
- EPSS 69.02%
- Published 07.05.2014 10:55:04
- Last modified 12.04.2025 10:46:40
The n_tty_write function in drivers/tty/n_tty.c in the Linux kernel through 3.14.3 does not properly manage tty driver access in the "LECHO & !OPOST" case, which allows local users to cause a denial of service (memory corruption and system crash) or ...
CVE-2014-1530
- EPSS 0.87%
- Published 30.04.2014 10:49:05
- Last modified 12.04.2025 10:46:40
The docshell implementation in Mozilla Firefox before 29.0, Firefox ESR 24.x before 24.5, Thunderbird before 24.5, and SeaMonkey before 2.26 allows remote attackers to trigger the loading of a URL with a spoofed baseURI property, and conduct cross-si...
CVE-2014-1531
- EPSS 5.09%
- Published 30.04.2014 10:49:05
- Last modified 12.04.2025 10:46:40
Use-after-free vulnerability in the nsGenericHTMLElement::GetWidthHeightForImage function in Mozilla Firefox before 29.0, Firefox ESR 24.x before 24.5, Thunderbird before 24.5, and SeaMonkey before 2.26 allows remote attackers to execute arbitrary co...
CVE-2014-1532
- EPSS 4.89%
- Published 30.04.2014 10:49:05
- Last modified 12.04.2025 10:46:40
Use-after-free vulnerability in the nsHostResolver::ConditionallyRefreshRecord function in libxul.so in Mozilla Firefox before 29.0, Firefox ESR 24.x before 24.5, Thunderbird before 24.5, and SeaMonkey before 2.26 allows remote attackers to execute a...
CVE-2014-1518
- EPSS 2.82%
- Published 30.04.2014 10:49:04
- Last modified 12.04.2025 10:46:40
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 29.0, Firefox ESR 24.x before 24.5, Thunderbird before 24.5, and SeaMonkey before 2.26 allow remote attackers to cause a denial of service (memory corruption and app...
CVE-2014-1523
- EPSS 0.54%
- Published 30.04.2014 10:49:04
- Last modified 12.04.2025 10:46:40
Heap-based buffer overflow in the read_u32 function in Mozilla Firefox before 29.0, Firefox ESR 24.x before 24.5, Thunderbird before 24.5, and SeaMonkey before 2.26 allows remote attackers to cause a denial of service (out-of-bounds read and applicat...