- EPSS 1.66%
- Veröffentlicht 16.12.2015 11:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
Buffer overflow in the DirectWriteFontInfo::LoadFontFamilyData function in gfx/thebes/gfxDWriteFontList.cpp in Mozilla Firefox before 43.0 might allow remote attackers to cause a denial of service or possibly have unspecified other impact via a craft...
- EPSS 1.91%
- Veröffentlicht 16.12.2015 11:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 43.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
- EPSS 1.91%
- Veröffentlicht 16.12.2015 11:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary cod...
- EPSS 2.95%
- Veröffentlicht 15.12.2015 21:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
Heap-based buffer overflow in the xmlGROW function in parser.c in libxml2 before 2.9.3 allows context-dependent attackers to obtain sensitive process memory information via unspecified vectors.
CVE-2015-5309
- EPSS 1.74%
- Veröffentlicht 07.12.2015 20:59:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer overflow in the terminal emulator in PuTTY before 0.66 allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via an ECH (erase characters) escape sequence with a large parameter value, whi...
CVE-2015-3195
- EPSS 3.48%
- Veröffentlicht 06.12.2015 20:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ASN1_TFLG_COMBINE implementation in crypto/asn1/tasn_dec.c in OpenSSL before 0.9.8zh, 1.0.0 before 1.0.0t, 1.0.1 before 1.0.1q, and 1.0.2 before 1.0.2e mishandles errors caused by malformed X509_ATTRIBUTE data, which allows remote attackers to ob...
CVE-2015-8078
- EPSS 0.81%
- Veröffentlicht 03.12.2015 20:59:10
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer overflow in the index_urlfetch function in imap/index.c in Cyrus IMAP 2.3.19, 2.4.18, and 2.5.6 allows remote attackers to have unspecified impact via vectors related to urlfetch range checks and the section_offset variable. NOTE: this vulne...
CVE-2015-8077
- EPSS 3.43%
- Veröffentlicht 03.12.2015 20:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer overflow in the index_urlfetch function in imap/index.c in Cyrus IMAP 2.3.19, 2.4.18, and 2.5.6 allows remote attackers to have unspecified impact via vectors related to urlfetch range checks and the start_octet variable. NOTE: this vulnerab...
CVE-2015-8076
- EPSS 2.63%
- Veröffentlicht 03.12.2015 20:59:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
The index_urlfetch function in index.c in Cyrus IMAP 2.3.x before 2.3.19, 2.4.x before 2.4.18, 2.5.x before 2.5.4 allows remote attackers to obtain sensitive information or possibly have unspecified other impact via vectors related to the urlfetch ra...
- EPSS 0.68%
- Veröffentlicht 19.11.2015 20:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
The psf_fwrite function in file_io.c in libsndfile allows attackers to cause a denial of service (divide-by-zero error and application crash) via unspecified vectors related to the headindex variable.