CVE-2015-5287
- EPSS 3.27%
- Veröffentlicht 07.12.2015 18:59:02
- Zuletzt bearbeitet 27.08.2026 04:16:38
The abrt-hook-ccpp help program in Automatic Bug Reporting Tool (ABRT) before 2.7.1 allows local users with certain permissions to gain privileges via a symlink attack on a file with a predictable name, as demonstrated by /var/tmp/abrt/abrt-hax-cored...
CVE-2015-5281
- EPSS 0.34%
- Veröffentlicht 24.11.2015 20:59:04
- Zuletzt bearbeitet 06.05.2026 22:30:45
The grub2 package before 2.02-0.29 in Red Hat Enterprise Linux (RHEL) 7, when used on UEFI systems, allows local users to bypass intended Secure Boot restrictions and execute non-verified code via a crafted (1) multiboot or (2) multiboot2 module in t...
CVE-2015-4910
- EPSS 1.98%
- Veröffentlicht 22.10.2015 00:00:13
- Zuletzt bearbeitet 06.05.2026 22:30:45
Unspecified vulnerability in Oracle MySQL Server 5.6.26 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : Memcached.
CVE-2015-4890
- EPSS 1.91%
- Veröffentlicht 21.10.2015 23:59:51
- Zuletzt bearbeitet 06.05.2026 22:30:45
Unspecified vulnerability in Oracle MySQL Server 5.6.26 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : Replication.
- EPSS 2.29%
- Veröffentlicht 21.10.2015 23:59:27
- Zuletzt bearbeitet 06.05.2026 22:30:45
Unspecified vulnerability in Oracle MySQL Server 5.6.26 and earlier allows remote authenticated users to affect availability via vectors related to DML.
- EPSS 2.29%
- Veröffentlicht 21.10.2015 21:59:17
- Zuletzt bearbeitet 06.05.2026 22:30:45
Unspecified vulnerability in Oracle MySQL Server 5.6.26 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : Optimizer.
CVE-2015-7833
- EPSS 0.68%
- Veröffentlicht 19.10.2015 10:59:10
- Zuletzt bearbeitet 06.05.2026 22:30:45
The usbvision driver in the Linux kernel package 3.10.0-123.20.1.el7 through 3.10.0-229.14.1.el7 in Red Hat Enterprise Linux (RHEL) 7.1 allows physically proximate attackers to cause a denial of service (panic) via a nonzero bInterfaceNumber value in...
CVE-2015-3247
- EPSS 1.14%
- Veröffentlicht 08.09.2015 15:59:02
- Zuletzt bearbeitet 06.05.2026 22:30:45
Race condition in the worker_update_monitors_config function in SPICE 0.12.4 allows a remote authenticated guest user to cause a denial of service (heap-based memory corruption and QEMU-KVM crash) or possibly execute arbitrary code on the host via un...
- EPSS 6.29%
- Veröffentlicht 14.08.2015 18:59:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
The xmlreader in libxml allows remote attackers to cause a denial of service (memory consumption) via crafted XML data, related to an XML Entity Expansion (XEE) attack.
CVE-2015-3246
- EPSS 6.8%
- Veröffentlicht 11.08.2015 14:59:07
- Zuletzt bearbeitet 02.10.2026 11:33:29
libuser before 0.56.13-8 and 0.60 before 0.60-7, as used in the userhelper program in the usermode package, directly modifies /etc/passwd, which allows local users to cause a denial of service (inconsistent file state) by causing an error during the ...