CVE-2015-1209
- EPSS 2.85%
- Veröffentlicht 06.02.2015 11:59:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
Use-after-free vulnerability in the VisibleSelection::nonBoundaryShadowTreeRootNode function in core/editing/VisibleSelection.cpp in the DOM implementation in Blink, as used in Google Chrome before 40.0.2214.111 on Windows, OS X, and Linux and before...
- EPSS 2.78%
- Veröffentlicht 03.02.2015 16:59:13
- Zuletzt bearbeitet 06.05.2026 22:30:45
parsers.c in Privoxy before 3.0.23 allows remote attackers to cause a denial of service (invalid read and crash) via vectors related to an HTTP time header.
- EPSS 2.78%
- Veröffentlicht 03.02.2015 16:59:12
- Zuletzt bearbeitet 06.05.2026 22:30:45
Multiple unspecified vulnerabilities in pcrs.c in Privoxy before 3.0.23 allow remote attackers to cause a denial of service (segmentation fault or memory consumption) via unspecified vectors.
- EPSS 3.4%
- Veröffentlicht 03.02.2015 16:59:11
- Zuletzt bearbeitet 06.05.2026 22:30:45
jcc.c in Privoxy before 3.0.23 allows remote attackers to cause a denial of service (abort) via a crafted chunk-encoded body.
- EPSS 95.68%
- Veröffentlicht 02.02.2015 19:59:00
- Zuletzt bearbeitet 21.04.2026 21:09:17
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.269 and 14.x through 16.x before 16.0.0.305 on Windows and OS X and before 11.2.202.442 on Linux allows remote attackers to execute arbitrary code via unspecified vectors, as exploited ...
- EPSS 6.73%
- Veröffentlicht 28.01.2015 11:59:08
- Zuletzt bearbeitet 06.05.2026 22:30:45
Unspecified vulnerability in vsftpd 3.0.2 and earlier allows remote attackers to bypass access restrictions via unknown vectors, related to deny_file parsing.
CVE-2015-1182
- EPSS 3.25%
- Veröffentlicht 27.01.2015 20:59:14
- Zuletzt bearbeitet 06.05.2026 22:30:45
The asn1_get_sequence_of function in library/asn1parse.c in PolarSSL 1.0 through 1.2.12 and 1.3.x through 1.3.9 does not properly initialize a pointer in the asn1_sequence linked list, which allows remote attackers to cause a denial of service (crash...
CVE-2014-8154
- EPSS 2.8%
- Veröffentlicht 27.01.2015 20:59:12
- Zuletzt bearbeitet 06.05.2026 22:30:45
The Gst.MapInfo function in Vala 0.26.0 and 0.26.1 uses an incorrect buffer length declaration for the Gstreamer bindings, which allows context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via unspecifie...
CVE-2014-8158
- EPSS 14.45%
- Veröffentlicht 26.01.2015 15:59:09
- Zuletzt bearbeitet 06.05.2026 22:30:45
Multiple stack-based buffer overflows in jpc_qmfb.c in JasPer 1.900.1 and earlier allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted JPEG 2000 image.
CVE-2014-8157
- EPSS 16.86%
- Veröffentlicht 26.01.2015 15:59:04
- Zuletzt bearbeitet 06.05.2026 22:30:45
Off-by-one error in the jpc_dec_process_sot function in JasPer 1.900.1 and earlier allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted JPEG 2000 image, which triggers a heap-based buffer overf...