CVE-2013-4242
- EPSS 0.09%
- Veröffentlicht 19.08.2013 23:55:09
- Zuletzt bearbeitet 29.04.2026 01:13:23
GnuPG before 1.4.14, and Libgcrypt before 1.5.3 as used in GnuPG 2.0.x and possibly other products, allows local users to obtain private RSA keys via a cache side-channel attack involving the L3 cache, aka Flush+Reload.
CVE-2013-4852
- EPSS 1.75%
- Veröffentlicht 19.08.2013 23:55:09
- Zuletzt bearbeitet 29.04.2026 01:13:23
Integer overflow in PuTTY 0.62 and earlier, WinSCP before 5.1.6, and other products that use PuTTY allows remote SSH servers to cause a denial of service (crash) and possibly execute arbitrary code in certain applications that use PuTTY via a negativ...
- EPSS 0.08%
- Veröffentlicht 19.08.2013 13:07:58
- Zuletzt bearbeitet 29.04.2026 01:13:23
HAProxy 1.4 before 1.4.24 and 1.5 before 1.5-dev19, when configured to use hdr_ip or other "hdr_*" functions with a negative occurrence count, allows remote attackers to cause a denial of service (negative array index usage and crash) via an HTTP hea...
CVE-2013-2886
- EPSS 0.4%
- Veröffentlicht 31.07.2013 13:20:14
- Zuletzt bearbeitet 29.04.2026 01:13:23
Multiple unspecified vulnerabilities in Google Chrome before 28.0.1500.95 allow attackers to cause a denial of service or possibly have other impact via unknown vectors.
CVE-2013-2881
- EPSS 0.37%
- Veröffentlicht 31.07.2013 13:20:13
- Zuletzt bearbeitet 29.04.2026 01:13:23
Google Chrome before 28.0.1500.95 does not properly handle frames, which allows remote attackers to bypass the Same Origin Policy via a crafted web site.
CVE-2013-2882
- EPSS 1.55%
- Veröffentlicht 31.07.2013 13:20:13
- Zuletzt bearbeitet 29.04.2026 01:13:23
Google V8, as used in Google Chrome before 28.0.1500.95, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that leverage "type confusion."
CVE-2013-2883
- EPSS 0.89%
- Veröffentlicht 31.07.2013 13:20:13
- Zuletzt bearbeitet 29.04.2026 01:13:23
Use-after-free vulnerability in Google Chrome before 28.0.1500.95 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to deleting the registration of a MutationObserver object.
CVE-2013-2884
- EPSS 0.89%
- Veröffentlicht 31.07.2013 13:20:13
- Zuletzt bearbeitet 29.04.2026 01:13:23
Use-after-free vulnerability in the DOM implementation in Google Chrome before 28.0.1500.95 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to improper tracking of which document owns...
CVE-2013-2885
- EPSS 1.38%
- Veröffentlicht 31.07.2013 13:20:13
- Zuletzt bearbeitet 29.04.2026 01:13:23
Use-after-free vulnerability in Google Chrome before 28.0.1500.95 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to not properly considering focus during the processing of JavaScript...
CVE-2013-2070
- EPSS 6.82%
- Veröffentlicht 20.07.2013 03:37:25
- Zuletzt bearbeitet 29.04.2026 01:13:23
http/modules/ngx_http_proxy_module.c in nginx 1.1.4 through 1.2.8 and 1.3.0 through 1.4.0, when proxy_pass is used with untrusted HTTP servers, allows remote attackers to cause a denial of service (crash) and obtain sensitive information from worker ...