CVE-2015-0374
- EPSS 0.24%
- Veröffentlicht 21.01.2015 18:59:21
- Zuletzt bearbeitet 06.05.2026 22:30:45
Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier and 5.6.21 and earlier allows remote authenticated users to affect confidentiality via unknown vectors related to Server : Security : Privileges : Foreign Key.
CVE-2014-6568
- EPSS 2.94%
- Veröffentlicht 21.01.2015 15:28:07
- Zuletzt bearbeitet 06.05.2026 22:30:45
Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier, and 5.6.21 and earlier, allows remote authenticated users to affect availability via vectors related to Server : InnoDB : DML.
CVE-2015-0973
- EPSS 2.01%
- Veröffentlicht 18.01.2015 18:59:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
Buffer overflow in the png_read_IDAT_data function in pngrutil.c in libpng before 1.5.21 and 1.6.x before 1.6.16 allows context-dependent attackers to execute arbitrary code via IDAT data with a large width, a different vulnerability than CVE-2014-94...
- EPSS 1.03%
- Veröffentlicht 16.01.2015 16:59:17
- Zuletzt bearbeitet 06.05.2026 22:30:45
Pillow before 2.7.0 allows remote attackers to cause a denial of service via a compressed text chunk in a PNG image that has a large size when it is decompressed.
CVE-2014-9496
- EPSS 0.12%
- Veröffentlicht 16.01.2015 16:59:16
- Zuletzt bearbeitet 06.05.2026 22:30:45
The sd2_parse_rsrc_fork function in sd2.c in libsndfile allows attackers to have unspecified impact via vectors related to a (1) map offset or (2) rsrc marker, which triggers an out-of-bounds read.
- EPSS 0.62%
- Veröffentlicht 10.01.2015 02:59:42
- Zuletzt bearbeitet 06.05.2026 22:30:45
Buffer underflow in the ssl_decrypt_record function in epan/dissectors/packet-ssl-utils.c in Wireshark 1.10.x before 1.10.12 and 1.12.x before 1.12.3 allows remote attackers to cause a denial of service (application crash) via a crafted packet that i...
- EPSS 0.26%
- Veröffentlicht 10.01.2015 02:59:39
- Zuletzt bearbeitet 06.05.2026 22:30:45
asn1/lpp/lpp.cnf in the LPP dissector in Wireshark 1.10.x before 1.10.12 and 1.12.x before 1.12.3 does not validate a certain index value, which allows remote attackers to cause a denial of service (out-of-bounds memory access and application crash) ...
CVE-2014-8145
- EPSS 13%
- Veröffentlicht 31.12.2014 22:59:03
- Zuletzt bearbeitet 06.05.2026 22:30:45
Multiple heap-based buffer overflows in Sound eXchange (SoX) 14.4.1 and earlier allow remote attackers to have unspecified impact via a crafted WAV file to the (1) start_read or (2) AdpcmReadBlock function.
CVE-2014-5353
- EPSS 0.55%
- Veröffentlicht 16.12.2014 23:59:00
- Zuletzt bearbeitet 06.05.2026 22:30:45
The krb5_ldap_get_password_policy_from_dn function in plugins/kdb/ldap/libkdb_ldap/ldap_pwd_policy.c in MIT Kerberos 5 (aka krb5) before 1.13.1, when the KDC uses LDAP, allows remote authenticated users to cause a denial of service (daemon crash) via...
- EPSS 2.06%
- Veröffentlicht 16.12.2014 18:59:10
- Zuletzt bearbeitet 06.05.2026 22:30:45
Heap-based buffer overflow in PCRE 8.36 and earlier allows remote attackers to cause a denial of service (crash) or have other unspecified impact via a crafted regular expression, related to an assertion that allows zero repeats.