CVE-2015-5199
- EPSS 0.05%
- Veröffentlicht 08.09.2015 15:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Directory traversal vulnerability in dlopen in libvdpau before 1.1.1 allows local users to gain privileges via the VDPAU_DRIVER environment variable.
CVE-2015-5198
- EPSS 0.09%
- Veröffentlicht 08.09.2015 15:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
libvdpau before 1.1.1, when used in a setuid or setgid application, allows local users to gain privileges via unspecified vectors, related to the VDPAU_DRIVER_PATH environment variable.
CVE-2015-6826
- EPSS 1.03%
- Veröffentlicht 06.09.2015 02:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ff_rv34_decode_init_thread_copy function in libavcodec/rv34.c in FFmpeg before 2.7.2 does not initialize certain structure members, which allows remote attackers to cause a denial of service (invalid pointer access) or possibly have unspecified o...
CVE-2015-6824
- EPSS 1.03%
- Veröffentlicht 06.09.2015 02:59:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
The sws_init_context function in libswscale/utils.c in FFmpeg before 2.7.2 does not initialize certain pixbuf data structures, which allows remote attackers to cause a denial of service (segmentation violation) or possibly have unspecified other impa...
CVE-2015-6820
- EPSS 1.03%
- Veröffentlicht 06.09.2015 02:59:02
- Zuletzt bearbeitet 12.04.2025 10:46:40
The ff_sbr_apply function in libavcodec/aacsbr.c in FFmpeg before 2.7.2 does not check for a matching AAC frame syntax element before proceeding with Spectral Band Replication calculations, which allows remote attackers to cause a denial of service (...
CVE-2015-6818
- EPSS 1.03%
- Veröffentlicht 06.09.2015 02:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
The decode_ihdr_chunk function in libavcodec/pngdec.c in FFmpeg before 2.7.2 does not enforce uniqueness of the IHDR (aka image header) chunk in a PNG image, which allows remote attackers to cause a denial of service (out-of-bounds array access) or p...
CVE-2015-3308
- EPSS 1.39%
- Veröffentlicht 02.09.2015 14:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
Double free vulnerability in lib/x509/x509_ext.c in GnuTLS before 3.3.14 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted CRL distribution point.
- EPSS 0.41%
- Veröffentlicht 01.09.2015 14:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Special:DeletedContributions page in MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x before 1.25.2 allows remote attackers to determine if an IP is autoblocked via the "Change block" text.
CVE-2015-5706
- EPSS 0.06%
- Veröffentlicht 31.08.2015 10:59:16
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in the path_openat function in fs/namei.c in the Linux kernel 3.x and 4.x before 4.0.4 allows local users to cause a denial of service or possibly have unspecified other impact via O_TMPFILE filesystem operations that lev...
CVE-2015-5364
- EPSS 21.23%
- Veröffentlicht 31.08.2015 10:59:12
- Zuletzt bearbeitet 12.04.2025 10:46:40
The (1) udp_recvmsg and (2) udpv6_recvmsg functions in the Linux kernel before 4.0.6 do not properly consider yielding a processor, which allows remote attackers to cause a denial of service (system hang) via incorrect checksums within a UDP packet f...