CVE-2015-8668
- EPSS 4.76%
- Veröffentlicht 08.01.2016 19:59:18
- Zuletzt bearbeitet 12.04.2025 10:46:40
Heap-based buffer overflow in the PackBitsPreEncode function in tif_packbits.c in bmp2tiff in libtiff 4.0.6 and earlier allows remote attackers to execute arbitrary code or cause a denial of service via a large width field in a BMP image.
- EPSS 67.13%
- Veröffentlicht 16.12.2015 15:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
db.c in named in ISC BIND 9.x before 9.9.8-P2 and 9.10.x before 9.10.3-P2 allows remote attackers to cause a denial of service (REQUIRE assertion failure and daemon exit) via a malformed class attribute.
CVE-2015-3276
- EPSS 1.96%
- Veröffentlicht 07.12.2015 20:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
The nss_parse_ciphers function in libraries/libldap/tls_m.c in OpenLDAP does not properly parse OpenSSL-style multi-keyword mode cipher strings, which might cause a weaker than intended cipher to be used and allow remote attackers to have unspecified...
CVE-2015-3195
- EPSS 3.48%
- Veröffentlicht 06.12.2015 20:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ASN1_TFLG_COMBINE implementation in crypto/asn1/tasn_dec.c in OpenSSL before 0.9.8zh, 1.0.0 before 1.0.0t, 1.0.1 before 1.0.1q, and 1.0.2 before 1.0.2e mishandles errors caused by malformed X509_ATTRIBUTE data, which allows remote attackers to ob...
CVE-2015-8391
- EPSS 6.4%
- Veröffentlicht 02.12.2015 01:59:15
- Zuletzt bearbeitet 12.04.2025 10:46:40
The pcre_compile function in pcre_compile.c in PCRE before 8.38 mishandles certain [: nesting, which allows remote attackers to cause a denial of service (CPU consumption) or possibly have unspecified other impact via a crafted regular expression, as...
CVE-2015-8388
- EPSS 4.18%
- Veröffentlicht 02.12.2015 01:59:12
- Zuletzt bearbeitet 12.04.2025 10:46:40
PCRE before 8.38 mishandles the /(?=di(?<=(?1))|(?=(.))))/ pattern and related patterns with an unmatched closing parenthesis, which allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via ...
CVE-2015-8386
- EPSS 7.52%
- Veröffentlicht 02.12.2015 01:59:10
- Zuletzt bearbeitet 12.04.2025 10:46:40
PCRE before 8.38 mishandles the interaction of lookbehind assertions and mutually recursive subpatterns, which allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via a crafted regular expr...
CVE-2015-8385
- EPSS 5.15%
- Veröffentlicht 02.12.2015 01:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
PCRE before 8.38 mishandles the /(?|(\k'Pm')|(?'Pm'))/ pattern and related patterns with certain forward references, which allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via a crafted ...
CVE-2015-2328
- EPSS 2.71%
- Veröffentlicht 02.12.2015 01:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
PCRE before 8.36 mishandles the /((?(R)a|(?1)))+/ pattern and related patterns with certain recursion, which allows remote attackers to cause a denial of service (segmentation fault) or possibly have unspecified other impact via a crafted regular exp...
- EPSS 1.08%
- Veröffentlicht 17.11.2015 15:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
GNOME NetworkManager allows remote attackers to cause a denial of service (IPv6 traffic disruption) via a crafted MTU value in an IPv6 Router Advertisement (RA) message, a different vulnerability than CVE-2015-8215.