- EPSS 12.33%
- Published 10.04.2015 15:00:05
- Last modified 12.04.2025 10:46:40
Stack-based buffer overflow in asn1_der_decoding in libtasn1 before 4.4 allows remote attackers to have unspecified impact via unknown vectors.
CVE-2015-2782
- EPSS 5.45%
- Published 08.04.2015 18:59:06
- Last modified 12.04.2025 10:46:40
Buffer overflow in Open-source ARJ archiver 3.10.22 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted ARJ archive.
CVE-2015-2756
- EPSS 0.12%
- Published 01.04.2015 14:59:08
- Last modified 12.04.2025 10:46:40
QEMU, as used in Xen 3.3.x through 4.5.x, does not properly restrict access to PCI command registers, which might allow local HVM guest users to cause a denial of service (non-maskable interrupt and host crash) by disabling the (1) memory or (2) I/O ...
- EPSS 0.14%
- Published 01.04.2015 14:59:00
- Last modified 12.04.2025 10:46:40
The default slapd configuration in the Debian openldap package 2.4.23-3 through 2.4.39-1.1 allows remote authenticated users to modify the user's permissions and other user attributes via unspecified vectors.
- EPSS 52.59%
- Published 01.04.2015 02:00:35
- Last modified 12.04.2025 10:46:40
The RC4 algorithm, as used in the TLS protocol and SSL protocol, does not properly combine state data with key data during the initialization phase, which makes it easier for remote attackers to conduct plaintext-recovery attacks against the initial ...
CVE-2015-2776
- EPSS 2.01%
- Published 31.03.2015 14:59:12
- Last modified 12.04.2025 10:46:40
The parse_SST function in FreeXL before 1.0.0i allows remote attackers to cause a denial of service (memory consumption) via a crafted shared strings table in a workbook.
CVE-2015-2754
- EPSS 2.15%
- Published 31.03.2015 14:59:11
- Last modified 12.04.2025 10:46:40
FreeXL before 1.0.0i allows remote attackers to cause a denial of service (stack corruption) and possibly execute arbitrary code via a crafted workbook, related to a "premature EOF."
CVE-2015-2753
- EPSS 1.92%
- Published 31.03.2015 14:59:10
- Last modified 12.04.2025 10:46:40
FreeXL before 1.0.0i allows remote attackers to cause a denial of service (stack corruption) or possibly execute arbitrary code via a crafted sector in a workbook.
- EPSS 0.46%
- Published 31.03.2015 14:59:09
- Last modified 12.04.2025 10:46:40
Shibboleth Service Provider (SP) before 2.5.4 allows remote authenticated users to cause a denial of service (crash) via a crafted SAML message.
CVE-2015-0838
- EPSS 2.81%
- Published 31.03.2015 14:59:08
- Last modified 12.04.2025 10:46:40
Buffer overflow in the C implementation of the apply_delta function in _pack.c in Dulwich before 0.9.9 allows remote attackers to execute arbitrary code via a crafted pack file.