CVE-2015-6244
- EPSS 0.8%
- Veröffentlicht 24.08.2015 23:59:04
- Zuletzt bearbeitet 06.05.2026 22:30:45
The dissect_zbee_secure function in epan/dissectors/packet-zbee-security.c in the ZigBee dissector in Wireshark 1.12.x before 1.12.7 improperly relies on length fields contained in packet data, which allows remote attackers to cause a denial of servi...
CVE-2015-6243
- EPSS 0.66%
- Veröffentlicht 24.08.2015 23:59:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
The dissector-table implementation in epan/packet.c in Wireshark 1.12.x before 1.12.7 mishandles table searches for empty strings, which allows remote attackers to cause a denial of service (application crash) via a crafted packet, related to the (1)...
- EPSS 2.05%
- Veröffentlicht 14.08.2015 18:59:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
The xmlreader in libxml allows remote attackers to cause a denial of service (memory consumption) via crafted XML data, related to an XML Entity Expansion (XEE) attack.
CVE-2015-5165
- EPSS 13.17%
- Veröffentlicht 12.08.2015 14:59:24
- Zuletzt bearbeitet 06.05.2026 22:30:45
The C+ mode offload emulation in the RTL8139 network card device model in QEMU, as used in Xen 4.5.x and earlier, allows remote attackers to read process heap memory via unspecified vectors.
- EPSS 10.61%
- Veröffentlicht 20.07.2015 23:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
The read_request_line function in server/protocol.c in the Apache HTTP Server 2.4.12 does not initialize the protocol structure member, which allows remote attackers to cause a denial of service (NULL pointer dereference and process crash) by sending...
- EPSS 75.52%
- Veröffentlicht 09.06.2015 18:59:06
- Zuletzt bearbeitet 06.05.2026 22:30:45
Algorithmic complexity vulnerability in the multipart_buffer_headers function in main/rfc1867.c in PHP before 5.4.41, 5.5.x before 5.5.25, and 5.6.x before 5.6.9 allows remote attackers to cause a denial of service (CPU consumption) via crafted form ...
CVE-2015-3330
- EPSS 38.96%
- Veröffentlicht 09.06.2015 18:59:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
The php_handler function in sapi/apache2handler/sapi_apache2.c in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8, when the Apache HTTP Server 2.4.x is used, allows remote attackers to cause a denial of service (application crash) or p...
CVE-2015-3329
- EPSS 28.78%
- Veröffentlicht 09.06.2015 18:59:02
- Zuletzt bearbeitet 06.05.2026 22:30:45
Multiple stack-based buffer overflows in the phar_set_inode function in phar_internal.h in PHP before 5.4.40, 5.5.x before 5.5.24, and 5.6.x before 5.6.8 allow remote attackers to execute arbitrary code via a crafted length value in a (1) tar, (2) ph...
CVE-2015-2922
- EPSS 1.72%
- Veröffentlicht 27.05.2015 10:59:06
- Zuletzt bearbeitet 06.05.2026 22:30:45
The ndisc_router_discovery function in net/ipv6/ndisc.c in the Neighbor Discovery (ND) protocol implementation in the IPv6 stack in the Linux kernel before 3.19.6 allows remote attackers to reconfigure a hop-limit setting via a small hop_limit value ...
CVE-2015-3812
- EPSS 0.58%
- Veröffentlicht 26.05.2015 15:59:06
- Zuletzt bearbeitet 06.05.2026 22:30:45
Multiple memory leaks in the x11_init_protocol function in epan/dissectors/packet-x11.c in the X11 dissector in Wireshark 1.10.x before 1.10.14 and 1.12.x before 1.12.5 allow remote attackers to cause a denial of service (memory consumption) via a cr...