Oracle

Solaris

548 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.3%
  • Veröffentlicht 08.03.2015 02:59:03
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Off-by-one error in the pcapng_read function in wiretap/pcapng.c in the pcapng file parser in Wireshark 1.10.x before 1.10.13 and 1.12.x before 1.12.4 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via...

  • EPSS 0.34%
  • Veröffentlicht 08.03.2015 02:59:02
  • Zuletzt bearbeitet 12.04.2025 10:46:40

epan/dissectors/packet-wcp.c in the WCP dissector in Wireshark 1.10.x before 1.10.13 and 1.12.x before 1.12.4 does not properly initialize a data structure, which allows remote attackers to cause a denial of service (out-of-bounds read and applicatio...

  • EPSS 2.18%
  • Veröffentlicht 25.02.2015 11:59:10
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Buffer overflow in libstagefright in Mozilla Firefox before 36.0 allows remote attackers to execute arbitrary code via a crafted MP4 video that is improperly handled during playback.

  • EPSS 1.36%
  • Veröffentlicht 25.02.2015 11:59:08
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Double free vulnerability in the nsXMLHttpRequest::GetResponse function in Mozilla Firefox before 36.0, when a nonstandard memory allocator is used, allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruptio...

Exploit
  • EPSS 8.88%
  • Veröffentlicht 12.02.2015 16:59:01
  • Zuletzt bearbeitet 12.04.2025 10:46:40

rsync 3.1.1 allows remote attackers to write to arbitrary files via a symlink attack on a file in the synchronization path.

Exploit
  • EPSS 5.12%
  • Veröffentlicht 08.02.2015 11:59:35
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The Mac_Read_POST_Resource function in base/ftobjs.c in FreeType before 2.5.4 proceeds with adding to length values without validating the original values, which allows remote attackers to cause a denial of service (integer overflow and heap-based bu...

Exploit
  • EPSS 4.7%
  • Veröffentlicht 08.02.2015 11:59:33
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Array index error in the parse_fond function in base/ftmac.c in FreeType before 2.5.4 allows remote attackers to cause a denial of service (out-of-bounds read) or obtain sensitive information from process memory via a crafted FOND resource in a Mac f...

Exploit
  • EPSS 3.22%
  • Veröffentlicht 08.02.2015 11:59:32
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Off-by-one error in the pcf_get_properties function in pcf/pcfread.c in FreeType before 2.5.4 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted PCF file with a 0xffffffff size value th...

Exploit
  • EPSS 5.05%
  • Veröffentlicht 08.02.2015 11:59:31
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Multiple integer signedness errors in the pcf_get_encodings function in pcf/pcfread.c in FreeType before 2.5.4 allow remote attackers to cause a denial of service (integer overflow, NULL pointer dereference, and application crash) via a crafted PCF f...

Exploit
  • EPSS 2.44%
  • Veröffentlicht 08.02.2015 11:59:30
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Multiple integer overflows in sfnt/ttcmap.c in FreeType before 2.5.4 allow remote attackers to cause a denial of service (out-of-bounds read or memory corruption) or possibly have unspecified other impact via a crafted cmap SFNT table.