CVE-2015-8035
- EPSS 1.05%
- Veröffentlicht 18.11.2015 16:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
The xz_decomp function in xzlib.c in libxml2 2.9.1 does not properly detect compression errors, which allows context-dependent attackers to cause a denial of service (process hang) via crafted XML data.
CVE-2015-7942
- EPSS 1.46%
- Veröffentlicht 18.11.2015 16:59:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
The xmlParseConditionalSections function in parser.c in libxml2 does not properly skip intermediary entities when it stops parsing invalid input, which allows context-dependent attackers to cause a denial of service (out-of-bounds read and crash) via...
CVE-2015-8104
- EPSS 0.35%
- Veröffentlicht 16.11.2015 11:59:12
- Zuletzt bearbeitet 23.04.2025 16:15:20
The KVM subsystem in the Linux kernel through 4.2.6, and Xen 4.3.x through 4.6.x, allows guest OS users to cause a denial of service (host OS panic or hang) by triggering many #DB (aka Debug) exceptions, related to svm.c.
CVE-2015-7312
- EPSS 0.04%
- Veröffentlicht 16.11.2015 11:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple race conditions in the Advanced Union Filesystem (aufs) aufs3-mmap.patch and aufs4-mmap.patch patches for the Linux kernel 3.x and 4.x allow local users to cause a denial of service (use-after-free and BUG) or possibly gain privileges via a ...
CVE-2015-5307
- EPSS 0.17%
- Veröffentlicht 16.11.2015 11:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
The KVM subsystem in the Linux kernel through 4.2.6, and Xen 4.3.x through 4.6.x, allows guest OS users to cause a denial of service (host OS panic or hang) by triggering many #AC (aka Alignment Check) exceptions, related to svm.c and vmx.c.
CVE-2015-2925
- EPSS 0.96%
- Veröffentlicht 16.11.2015 11:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
The prepend_path function in fs/dcache.c in the Linux kernel before 4.2.4 does not properly handle rename actions inside a bind mount, which allows local users to bypass an intended container protection mechanism by renaming a directory, related to a...
CVE-2015-8126
- EPSS 4.95%
- Veröffentlicht 13.11.2015 03:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple buffer overflows in the (1) png_set_PLTE and (2) png_get_PLTE functions in libpng before 1.0.64, 1.1.x and 1.2.x before 1.2.54, 1.3.x and 1.4.x before 1.4.17, 1.5.x before 1.5.24, and 1.6.x before 1.6.19 allow remote attackers to cause a den...
CVE-2015-5214
- EPSS 35.61%
- Veröffentlicht 10.11.2015 17:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
LibreOffice before 4.4.6 and 5.x before 5.0.1 and Apache OpenOffice before 4.1.2 allows remote attackers to cause a denial of service (memory corruption and application crash) or execute arbitrary code via an index to a non-existent bookmark in a DOC...
CVE-2015-5213
- EPSS 12.93%
- Veröffentlicht 10.11.2015 17:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer overflow in LibreOffice before 4.4.5 and Apache OpenOffice before 4.1.2 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a long DOC file, which triggers a bu...
CVE-2015-5212
- EPSS 51.08%
- Veröffentlicht 10.11.2015 17:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
Integer underflow in LibreOffice before 4.4.5 and Apache OpenOffice before 4.1.2, when the configuration setting "Load printer settings with the document" is enabled, allows remote attackers to cause a denial of service (memory corruption and applica...