CVE-2013-1872
- EPSS 1.13%
- Veröffentlicht 19.08.2013 23:55:08
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Intel drivers in Mesa 8.0.x and 9.0.x allow context-dependent attackers to cause a denial of service (reachable assertion and crash) and possibly execute arbitrary code via vectors involving 3d graphics that trigger an out-of-bounds array access,...
CVE-2013-4248
- EPSS 9.89%
- Veröffentlicht 18.08.2013 02:52:23
- Zuletzt bearbeitet 11.04.2025 00:51:21
The openssl_x509_parse function in openssl.c in the OpenSSL module in PHP before 5.4.18 and 5.5.x before 5.5.2 does not properly handle a '\0' character in a domain name in the Subject Alternative Name field of an X.509 certificate, which allows man-...
- EPSS 86.81%
- Veröffentlicht 06.08.2013 02:56:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in the read_nttrans_ea_list function in nttrans.c in smbd in Samba 3.x before 3.5.22, 3.6.x before 3.6.17, and 4.x before 4.0.8 allows remote attackers to cause a denial of service (memory consumption) via a malformed packet.
CVE-2013-2174
- EPSS 3.18%
- Veröffentlicht 31.07.2013 13:20:25
- Zuletzt bearbeitet 11.04.2025 00:51:21
Heap-based buffer overflow in the curl_easy_unescape function in lib/escape.c in cURL and libcurl 7.7 through 7.30.0 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted string endi...
CVE-2013-4854
- EPSS 53.7%
- Veröffentlicht 29.07.2013 13:59:37
- Zuletzt bearbeitet 11.04.2025 00:51:21
The RFC 5011 implementation in rdata.c in ISC BIND 9.7.x and 9.8.x before 9.8.5-P2, 9.8.6b1, 9.9.x before 9.9.3-P2, and 9.9.4b1, and DNSco BIND 9.9.3-S1 before 9.9.3-S1-P1 and 9.9.4-S1b1, allows remote attackers to cause a denial of service (assertio...
CVE-2013-1943
- EPSS 0.12%
- Veröffentlicht 16.07.2013 14:08:50
- Zuletzt bearbeitet 11.04.2025 00:51:21
The KVM subsystem in the Linux kernel before 3.0 does not check whether kernel addresses are specified during allocation of memory slots for use in a guest's physical address space, which allows local users to gain privileges or obtain sensitive info...
CVE-2013-2188
- EPSS 0.04%
- Veröffentlicht 16.07.2013 14:08:50
- Zuletzt bearbeitet 11.04.2025 00:51:21
A certain Red Hat patch to the do_filp_open function in fs/namei.c in the kernel package before 2.6.32-358.11.1.el6 on Red Hat Enterprise Linux (RHEL) 6 does not properly handle failure to obtain write permissions, which allows local users to cause a...
CVE-2013-1935
- EPSS 0.23%
- Veröffentlicht 16.07.2013 14:08:49
- Zuletzt bearbeitet 11.04.2025 00:51:21
A certain Red Hat patch to the KVM subsystem in the kernel package before 2.6.32-358.11.1.el6 on Red Hat Enterprise Linux (RHEL) 6 does not properly implement the PV EOI feature, which allows guest OS users to cause a denial of service (host OS crash...
CVE-2013-1976
- EPSS 0.03%
- Veröffentlicht 09.07.2013 17:55:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The (1) tomcat5, (2) tomcat6, and (3) tomcat7 init scripts, as used in the RPM distribution of Tomcat for JBoss Enterprise Web Server 1.0.2 and 2.0.0, and Red Hat Enterprise Linux 5 and 6, allow local users to change the ownership of arbitrary files ...
CVE-2013-2051
- EPSS 0.34%
- Veröffentlicht 09.07.2013 17:55:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Tomcat 6 DIGEST authentication functionality as used in Red Hat Enterprise Linux 6 allows remote attackers to bypass intended access restrictions by performing a replay attack after a nonce becomes stale. NOTE: this issue is due to an incomplete...