- EPSS 6.95%
- Veröffentlicht 06.03.2020 15:15:14
- Zuletzt bearbeitet 21.11.2024 04:54:55
utility.c in telnetd in netkit telnet through 0.17 allows remote attackers to execute arbitrary code via short writes or urgent data, because of a buffer overflow involving the netclear and nextitem functions.
CVE-2015-6815
- EPSS 2.25%
- Veröffentlicht 31.01.2020 22:15:11
- Zuletzt bearbeitet 21.11.2024 02:35:42
The process_tx_desc function in hw/net/e1000.c in QEMU before 2.4.0.1 does not properly process transmit descriptor data when sending a network packet, which allows attackers to cause a denial of service (infinite loop and guest crash) via unspecifie...
CVE-2015-5745
- EPSS 1.92%
- Veröffentlicht 23.01.2020 20:15:12
- Zuletzt bearbeitet 21.11.2024 02:33:45
Buffer overflow in the send_control_msg function in hw/char/virtio-serial-bus.c in QEMU before 2.4.0 allows guest users to cause a denial of service (QEMU process crash) via a crafted virtio control message.
CVE-2015-5278
- EPSS 1.85%
- Veröffentlicht 23.01.2020 20:15:11
- Zuletzt bearbeitet 21.11.2024 02:32:42
The ne2000_receive function in hw/net/ne2000.c in QEMU before 2.4.0.1 allows attackers to cause a denial of service (infinite loop and instance crash) or possibly execute arbitrary code via vectors related to receiving packets.
CVE-2015-5239
- EPSS 5.06%
- Veröffentlicht 23.01.2020 20:15:11
- Zuletzt bearbeitet 21.11.2024 02:32:37
Integer overflow in the VNC display driver in QEMU before 2.1.0 allows attachers to cause a denial of service (process crash) via a CLIENT_CUT_TEXT message, which triggers an infinite loop.
CVE-2019-17596
- EPSS 2.34%
- Veröffentlicht 24.10.2019 22:15:10
- Zuletzt bearbeitet 21.11.2024 04:32:36
Go before 1.12.11 and 1.3.x before 1.13.2 can panic upon an attempt to process network traffic containing an invalid DSA public key. There are several attack scenarios, such as traffic from a client to a server that verifies client certificates.
CVE-2018-14008
- EPSS 0.18%
- Veröffentlicht 15.08.2019 17:15:11
- Zuletzt bearbeitet 21.11.2024 03:48:26
Arista EOS through 4.21.0F allows a crash because 802.1x authentication is mishandled.
CVE-2018-5254
- EPSS 0.6%
- Veröffentlicht 12.04.2018 21:29:00
- Zuletzt bearbeitet 21.11.2024 04:08:26
Arista EOS before 4.20.2F allows remote BGP peers to cause a denial of service (Rib agent restart) via a malformed path attribute in an UPDATE message.
CVE-2018-5255
- EPSS 0.61%
- Veröffentlicht 05.03.2018 18:29:00
- Zuletzt bearbeitet 21.11.2024 04:08:26
The Mlag agent in Arista EOS 4.19 before 4.19.4M and 4.20 before 4.20.2F allows remote attackers to cause a denial of service (agent restart) via crafted UDP packets.
- EPSS 27.65%
- Veröffentlicht 03.01.2018 06:29:00
- Zuletzt bearbeitet 03.01.2025 12:15:25
The tcpmss_mangle_packet function in net/netfilter/xt_TCPMSS.c in the Linux kernel before 4.11, and 4.9.x before 4.9.36, allows remote attackers to cause a denial of service (use-after-free and memory corruption) or possibly have unspecified other im...