Suse

Linux Enterprise Software Development Kit

296 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 92.41%
  • Veröffentlicht 25.12.2011 01:55:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Buffer overflow in libtelnet/encrypt.c in telnetd in FreeBSD 7.3 through 9.0, MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.2 and earlier, Heimdal 1.5.1 and earlier, GNU inetutils, and possibly other products allows remote attackers to exec...

  • EPSS 47.82%
  • Veröffentlicht 15.12.2011 03:57:34
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Heap-based buffer overflow in the jpc_cox_getcompparms function in libjasper/jpc/jpc_cs.c in JasPer 1.900.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted numrlvls value in a coding st...

  • EPSS 42.13%
  • Veröffentlicht 15.12.2011 03:57:34
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The jpc_crg_getparms function in libjasper/jpc/jpc_cs.c in JasPer 1.900.1 uses an incorrect data type during a certain size calculation, which allows remote attackers to trigger a heap-based buffer overflow and execute arbitrary code, or cause a deni...

  • EPSS 6.54%
  • Veröffentlicht 11.11.2011 18:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

FreeType in CoreGraphics in Apple iOS before 5.0.1 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted font in a document.

Exploit
  • EPSS 92.84%
  • Veröffentlicht 29.08.2011 15:55:02
  • Zuletzt bearbeitet 11.04.2025 00:51:21

The byterange filter in the Apache HTTP Server 1.3.x, 2.0.x through 2.0.64, and 2.2.x through 2.2.19 allows remote attackers to cause a denial of service (memory and CPU consumption) via a Range header that expresses multiple overlapping ranges, as e...

  • EPSS 0.23%
  • Veröffentlicht 11.07.2011 20:55:01
  • Zuletzt bearbeitet 11.04.2025 00:51:21

ftpd.c in the GSS-API FTP daemon in MIT Kerberos Version 5 Applications (aka krb5-appl) 1.0.1 and earlier does not check the krb5_setegid return value, which allows remote authenticated users to bypass intended group access restrictions, and create, ...

Exploit
  • EPSS 0.16%
  • Veröffentlicht 07.01.2011 12:00:48
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple integer overflows in the (1) pppol2tp_sendmsg function in net/l2tp/l2tp_ppp.c, and the (2) l2tp_ip_sendmsg function in net/l2tp/l2tp_ip.c, in the PPPoL2TP and IPoL2TP implementations in the Linux kernel before 2.6.36.2 allow local users to c...

  • EPSS 0.06%
  • Veröffentlicht 03.01.2011 20:00:42
  • Zuletzt bearbeitet 11.04.2025 00:51:21

net/packet/af_packet.c in the Linux kernel before 2.6.37-rc2 does not properly initialize certain structure members, which allows local users to obtain potentially sensitive information from kernel stack memory by leveraging the CAP_NET_RAW capabilit...

  • EPSS 0.08%
  • Veröffentlicht 03.01.2011 20:00:42
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple integer overflows in fs/bio.c in the Linux kernel before 2.6.36.2 allow local users to cause a denial of service (system crash) via a crafted device ioctl to a SCSI device.

  • EPSS 2%
  • Veröffentlicht 03.01.2011 20:00:42
  • Zuletzt bearbeitet 11.04.2025 00:51:21

Multiple integer underflows in the x25_parse_facilities function in net/x25/x25_facilities.c in the Linux kernel before 2.6.36.2 allow remote attackers to cause a denial of service (system crash) via malformed X.25 (1) X25_FAC_CLASS_A, (2) X25_FAC_CL...