CVE-2014-6568
- EPSS 0.39%
- Veröffentlicht 21.01.2015 15:28:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier, and 5.6.21 and earlier, allows remote authenticated users to affect availability via vectors related to Server : InnoDB : DML.
CVE-2015-0973
- EPSS 2.01%
- Veröffentlicht 18.01.2015 18:59:03
- Zuletzt bearbeitet 09.06.2025 16:15:24
Buffer overflow in the png_read_IDAT_data function in pngrutil.c in libpng before 1.5.21 and 1.6.x before 1.6.16 allows context-dependent attackers to execute arbitrary code via IDAT data with a large width, a different vulnerability than CVE-2014-94...
- EPSS 1.21%
- Veröffentlicht 16.01.2015 16:59:17
- Zuletzt bearbeitet 12.04.2025 10:46:40
Pillow before 2.7.0 allows remote attackers to cause a denial of service via a compressed text chunk in a PNG image that has a large size when it is decompressed.
CVE-2014-9496
- EPSS 0.1%
- Veröffentlicht 16.01.2015 16:59:16
- Zuletzt bearbeitet 12.04.2025 10:46:40
The sd2_parse_rsrc_fork function in sd2.c in libsndfile allows attackers to have unspecified impact via vectors related to a (1) map offset or (2) rsrc marker, which triggers an out-of-bounds read.
- EPSS 0.62%
- Veröffentlicht 10.01.2015 02:59:42
- Zuletzt bearbeitet 12.04.2025 10:46:40
Buffer underflow in the ssl_decrypt_record function in epan/dissectors/packet-ssl-utils.c in Wireshark 1.10.x before 1.10.12 and 1.12.x before 1.12.3 allows remote attackers to cause a denial of service (application crash) via a crafted packet that i...
- EPSS 0.26%
- Veröffentlicht 10.01.2015 02:59:39
- Zuletzt bearbeitet 12.04.2025 10:46:40
asn1/lpp/lpp.cnf in the LPP dissector in Wireshark 1.10.x before 1.10.12 and 1.12.x before 1.12.3 does not validate a certain index value, which allows remote attackers to cause a denial of service (out-of-bounds memory access and application crash) ...
CVE-2014-8145
- EPSS 13%
- Veröffentlicht 31.12.2014 22:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple heap-based buffer overflows in Sound eXchange (SoX) 14.4.1 and earlier allow remote attackers to have unspecified impact via a crafted WAV file to the (1) start_read or (2) AdpcmReadBlock function.
CVE-2014-5353
- EPSS 0.87%
- Veröffentlicht 16.12.2014 23:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
The krb5_ldap_get_password_policy_from_dn function in plugins/kdb/ldap/libkdb_ldap/ldap_pwd_policy.c in MIT Kerberos 5 (aka krb5) before 1.13.1, when the KDC uses LDAP, allows remote authenticated users to cause a denial of service (daemon crash) via...
- EPSS 2.06%
- Veröffentlicht 16.12.2014 18:59:10
- Zuletzt bearbeitet 12.04.2025 10:46:40
Heap-based buffer overflow in PCRE 8.36 and earlier allows remote attackers to cause a denial of service (crash) or have other unspecified impact via a crafted regular expression, related to an assertion that allows zero repeats.
CVE-2014-6052
- EPSS 5.24%
- Veröffentlicht 15.12.2014 18:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
The HandleRFBServerMessage function in libvncclient/rfbproto.c in LibVNCServer 0.9.9 and earlier does not check certain malloc return values, which allows remote VNC servers to cause a denial of service (application crash) or possibly execute arbitra...