CVE-2017-14491
- EPSS 49.79%
- Veröffentlicht 04.10.2017 01:29:02
- Zuletzt bearbeitet 13.05.2026 00:24:29
Heap-based buffer overflow in dnsmasq before 2.78 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted DNS response.
CVE-2015-5194
- EPSS 8.41%
- Veröffentlicht 21.07.2017 14:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The log_config_command function in ntp_parser.y in ntpd in NTP before 4.2.7p42 allows remote attackers to cause a denial of service (ntpd crash) via crafted logconfig commands.
CVE-2015-5219
- EPSS 2.24%
- Veröffentlicht 21.07.2017 14:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The ULOGTOD function in ntp.d in SNTP before 4.2.7p366 does not properly perform type conversions from a precision value to a double, which allows remote attackers to cause a denial of service (infinite loop) via a crafted NTP packet.
CVE-2015-5300
- EPSS 36.84%
- Veröffentlicht 21.07.2017 14:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The panic_gate check in NTP before 4.2.8p5 is only re-enabled after the first change to the system clock that was greater than 128 milliseconds by default, which allows remote attackers to set NTP to an arbitrary time when started with the -g option,...
CVE-2017-1000366
- EPSS 8.87%
- Veröffentlicht 19.06.2017 16:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
glibc contains a vulnerability that allows specially crafted LD_LIBRARY_PATH values to manipulate the heap/stack, causing them to alias, potentially resulting in arbitrary code execution. Please note that additional hardening changes have been made t...
CVE-2015-8567
- EPSS 3.41%
- Veröffentlicht 13.04.2017 17:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
Memory leak in net/vmxnet3.c in QEMU allows remote attackers to cause a denial of service (memory consumption).
CVE-2015-4680
- EPSS 0.38%
- Veröffentlicht 05.04.2017 17:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
FreeRADIUS 2.2.x before 2.2.8 and 3.0.x before 3.0.9 does not properly check revocation of intermediate CA certificates.
CVE-2016-9398
- EPSS 4.11%
- Veröffentlicht 23.03.2017 18:59:01
- Zuletzt bearbeitet 13.05.2026 00:24:29
The jpc_floorlog2 function in jpc_math.c in JasPer before 1.900.17 allows remote attackers to cause a denial of service (assertion failure) via unspecified vectors.
CVE-2016-1602
- EPSS 0.11%
- Veröffentlicht 23.03.2017 06:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
A code injection in the supportconfig data collection tool in supportutils in SUSE Linux Enterprise Server 12 and 12-SP1 and SUSE Linux Enterprise Desktop 12 and 12-SP1 could be used by local attackers to execute code as the user running supportconfi...
CVE-2014-9852
- EPSS 1.32%
- Veröffentlicht 17.03.2017 14:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
distribute-cache.c in ImageMagick re-uses objects after they have been destroyed, which allows remote attackers to have unspecified impact via unspecified vectors.