Opensuse

Opensuse

1454 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.64%
  • Veröffentlicht 13.08.2012 20:55:09
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The png_push_read_zTXt function in pngpread.c in libpng 1.0.x before 1.0.58, 1.2.x before 1.2.48, 1.4.x before 1.4.10, and 1.5.x before 1.5.10 allows remote attackers to cause a denial of service (out-of-bounds read) via a large avail_in field value ...

Exploit
  • EPSS 1.42%
  • Veröffentlicht 06.08.2012 16:55:06
  • Zuletzt bearbeitet 11.04.2025 00:51:21

lib/puppet/ssl/certificate_authority.rb in Puppet before 2.6.17 and 2.7.x before 2.7.18, and Puppet Enterprise before 2.5.2, does not properly restrict the characters in the Common Name field of a Certificate Signing Request (CSR), which makes it eas...

Exploit
  • EPSS 0.58%
  • Veröffentlicht 24.07.2012 19:55:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

epan/dissectors/packet-nfs.c in the NFS dissector in Wireshark 1.4.x before 1.4.14, 1.6.x before 1.6.9, and 1.8.x before 1.8.1 allows remote attackers to cause a denial of service (loop and CPU consumption) via a crafted packet.

  • EPSS 1.76%
  • Veröffentlicht 22.07.2012 16:55:27
  • Zuletzt bearbeitet 11.04.2025 00:51:21

ModSecurity before 2.6.6, when used with PHP, does not properly handle single quotes not at the beginning of a request parameter value in the Content-Disposition field of a request with a multipart/form-data Content-Type header, which allows remote a...

  • EPSS 0.8%
  • Veröffentlicht 22.07.2012 16:55:17
  • Zuletzt bearbeitet 11.04.2025 00:51:21

ModSecurity before 2.5.11 treats request parameter values containing single quotes as files, which allows remote attackers to bypass filtering rules and perform other attacks such as cross-site scripting (XSS) attacks via a single quote in a request ...

  • EPSS 3.16%
  • Veröffentlicht 16.06.2012 00:55:03
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Heap-based buffer overflow in the Lookup_MarkMarkPos function in the HarfBuzz module (harfbuzz-gpos.c), as used by Qt before 4.7.4 and Pango, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a craft...

  • EPSS 3.47%
  • Veröffentlicht 09.06.2012 00:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Stack-based buffer overflow in Adobe Flash Player before 10.3.183.20 and 11.x before 11.3.300.257 on Windows and Mac OS X; before 10.3.183.20 and 11.x before 11.2.202.236 on Linux; before 11.1.111.10 on Android 2.x and 3.x; and before 11.1.115.9 on A...

  • EPSS 4.47%
  • Veröffentlicht 09.06.2012 00:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Integer overflow in Adobe Flash Player before 10.3.183.20 and 11.x before 11.3.300.257 on Windows and Mac OS X; before 10.3.183.20 and 11.x before 11.2.202.236 on Linux; before 11.1.111.10 on Android 2.x and 3.x; and before 11.1.115.9 on Android 4.x,...

  • EPSS 4.26%
  • Veröffentlicht 09.06.2012 00:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Adobe Flash Player before 10.3.183.20 and 11.x before 11.3.300.257 on Windows and Mac OS X; before 10.3.183.20 and 11.x before 11.2.202.236 on Linux; before 11.1.111.10 on Android 2.x and 3.x; and before 11.1.115.9 on Android 4.x, and Adobe AIR befor...

  • EPSS 1.36%
  • Veröffentlicht 09.06.2012 00:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Adobe Flash Player before 10.3.183.20 and 11.x before 11.3.300.257 on Windows and Mac OS X; before 10.3.183.20 and 11.x before 11.2.202.236 on Linux; before 11.1.111.10 on Android 2.x and 3.x; and before 11.1.115.9 on Android 4.x, and Adobe AIR befor...