- EPSS 0.97%
- Veröffentlicht 12.12.2014 15:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
OpenStack Dashboard (Horizon) before 2014.1.3 and 2014.2.x before 2014.2.1 does not properly handle session records when using a db or memcached session engine, which allows remote attackers to cause a denial of service via a large number of requests...
CVE-2014-8094
- EPSS 1.04%
- Veröffentlicht 10.12.2014 15:59:06
- Zuletzt bearbeitet 29.08.2025 13:42:30
Integer overflow in the ProcDRI2GetBuffers function in the DRI2 extension in X.Org Server (aka xserver and xorg-server) 1.7.0 through 1.16.x before 1.16.3 allows remote authenticated users to cause a denial of service (crash) or possibly execute arbi...
CVE-2014-7142
- EPSS 64.23%
- Veröffentlicht 26.11.2014 15:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
The pinger in Squid 3.x before 3.4.8 allows remote attackers to obtain sensitive information or cause a denial of service (crash) via a crafted (1) ICMP or (2) ICMP6 packet size.
CVE-2014-8991
- EPSS 0.07%
- Veröffentlicht 24.11.2014 15:59:15
- Zuletzt bearbeitet 12.04.2025 10:46:40
pip 1.3 through 1.5.6 allows local users to cause a denial of service (prevention of package installation) by creating a /tmp/pip-build-* file for another user.
- EPSS 28.31%
- Veröffentlicht 20.11.2014 17:50:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple Integer underflows in the geonet_print function in tcpdump 4.5.0 through 4.6.2, when in verbose mode, allow remote attackers to cause a denial of service (segmentation fault and crash) via a crafted length value in a Geonet frame.
CVE-2014-6551
- EPSS 0.15%
- Veröffentlicht 15.10.2014 22:55:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier and 5.6.19 and earlier allows local users to affect confidentiality via vectors related to CLIENT:MYSQLADMIN.
CVE-2014-6559
- EPSS 0.81%
- Veröffentlicht 15.10.2014 22:55:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect confidentiality via vectors related to C API SSL CERTIFICATE HANDLING.
CVE-2014-6530
- EPSS 0.4%
- Veröffentlicht 15.10.2014 22:55:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to CLIENT:MYSQLDUMP.
CVE-2014-6495
- EPSS 0.56%
- Veröffentlicht 15.10.2014 22:55:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier, and 5.6.19 and earlier, allows remote attackers to affect availability via vectors related to SERVER:SSL:yaSSL.
CVE-2014-6496
- EPSS 0.5%
- Veröffentlicht 15.10.2014 22:55:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
Unspecified vulnerability in Oracle MySQL Server 5.5.39 and earlier, and 5.6.20 and earlier, allows remote attackers to affect availability via vectors related to CLIENT:SSL:yaSSL, a different vulnerability than CVE-2014-6494.