Novell

Suse Studio Onsite

12 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 2.35%
  • Veröffentlicht 23.11.2013 11:55:04
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The ExportAlphaQuantumType function in export.c in GraphicsMagick before 1.3.18 might allow remote attackers to cause a denial of service (crash) via vectors related to exporting the alpha of an 8-bit RGBA image.

  • EPSS 0.23%
  • Veröffentlicht 23.08.2011 21:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows attackers to have an unknown impact via a crafted directory pathname that is inserted into config.sh.

  • EPSS 0.16%
  • Veröffentlicht 23.08.2011 21:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Cross-site scripting (XSS) vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to a pattern listing.

  • EPSS 0.3%
  • Veröffentlicht 23.08.2011 21:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Cross-site scripting (XSS) vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to an RPM info display.

  • EPSS 2.36%
  • Veröffentlicht 23.08.2011 21:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to execute arbitrary code via a crafted filename for a custom RPM.

  • EPSS 2.36%
  • Veröffentlicht 23.08.2011 21:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to execute arbitrary code via a crafted filename in the list of testdrive modified files.

  • EPSS 3.17%
  • Veröffentlicht 23.08.2011 21:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to execute arbitrary code via a crafted archive name in the list of testdrive modified files.

  • EPSS 3.17%
  • Veröffentlicht 23.08.2011 21:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to execute arbitrary code via a filter in a modified file.

  • EPSS 0.43%
  • Veröffentlicht 23.08.2011 21:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows attackers to execute arbitrary commands via shell metacharacters in an unspecified FileUtils function call.

  • EPSS 0.3%
  • Veröffentlicht 23.08.2011 21:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Cross-site scripting (XSS) vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via a crafted pattern name that is included in an RPM info display.