Oracle

Solaris

548 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.62%
  • Veröffentlicht 10.01.2015 02:59:42
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Buffer underflow in the ssl_decrypt_record function in epan/dissectors/packet-ssl-utils.c in Wireshark 1.10.x before 1.10.12 and 1.12.x before 1.12.3 allows remote attackers to cause a denial of service (application crash) via a crafted packet that i...

  • EPSS 0.26%
  • Veröffentlicht 10.01.2015 02:59:39
  • Zuletzt bearbeitet 12.04.2025 10:46:40

asn1/lpp/lpp.cnf in the LPP dissector in Wireshark 1.10.x before 1.10.12 and 1.12.x before 1.12.3 does not validate a certain index value, which allows remote attackers to cause a denial of service (out-of-bounds memory access and application crash) ...

Exploit
  • EPSS 13%
  • Veröffentlicht 31.12.2014 22:59:03
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Multiple heap-based buffer overflows in Sound eXchange (SoX) 14.4.1 and earlier allow remote attackers to have unspecified impact via a crafted WAV file to the (1) start_read or (2) AdpcmReadBlock function.

  • EPSS 0.87%
  • Veröffentlicht 16.12.2014 23:59:00
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The krb5_ldap_get_password_policy_from_dn function in plugins/kdb/ldap/libkdb_ldap/ldap_pwd_policy.c in MIT Kerberos 5 (aka krb5) before 1.13.1, when the KDC uses LDAP, allows remote authenticated users to cause a denial of service (daemon crash) via...

  • EPSS 2.09%
  • Veröffentlicht 16.12.2014 18:59:10
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Heap-based buffer overflow in PCRE 8.36 and earlier allows remote attackers to cause a denial of service (crash) or have other unspecified impact via a crafted regular expression, related to an assertion that allows zero repeats.

Exploit
  • EPSS 5.24%
  • Veröffentlicht 15.12.2014 18:59:04
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The HandleRFBServerMessage function in libvncclient/rfbproto.c in LibVNCServer 0.9.9 and earlier does not check certain malloc return values, which allows remote VNC servers to cause a denial of service (application crash) or possibly execute arbitra...

  • EPSS 0.78%
  • Veröffentlicht 12.12.2014 15:59:09
  • Zuletzt bearbeitet 12.04.2025 10:46:40

OpenStack Dashboard (Horizon) before 2014.1.3 and 2014.2.x before 2014.2.1 does not properly handle session records when using a db or memcached session engine, which allows remote attackers to cause a denial of service via a large number of requests...

  • EPSS 1.04%
  • Veröffentlicht 10.12.2014 15:59:06
  • Zuletzt bearbeitet 29.08.2025 13:42:30

Integer overflow in the ProcDRI2GetBuffers function in the DRI2 extension in X.Org Server (aka xserver and xorg-server) 1.7.0 through 1.16.x before 1.16.3 allows remote authenticated users to cause a denial of service (crash) or possibly execute arbi...

  • EPSS 64.23%
  • Veröffentlicht 26.11.2014 15:59:04
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The pinger in Squid 3.x before 3.4.8 allows remote attackers to obtain sensitive information or cause a denial of service (crash) via a crafted (1) ICMP or (2) ICMP6 packet size.

  • EPSS 0.13%
  • Veröffentlicht 24.11.2014 15:59:15
  • Zuletzt bearbeitet 12.04.2025 10:46:40

pip 1.3 through 1.5.6 allows local users to cause a denial of service (prevention of package installation) by creating a /tmp/pip-build-* file for another user.