CVE-2013-1896
- EPSS 38.56%
- Veröffentlicht 10.07.2013 20:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
mod_dav.c in the Apache HTTP Server before 2.2.25 does not properly determine whether DAV is enabled for a URI, which allows remote attackers to cause a denial of service (segmentation fault) via a MERGE request in which the URI is configured for han...
CVE-2013-1059
- EPSS 1.14%
- Veröffentlicht 08.07.2013 17:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
net/ceph/auth_none.c in the Linux kernel through 3.10 allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact via an auth_reply message that triggers an attempted buil...
CVE-2013-1690
- EPSS 49.62%
- Veröffentlicht 26.06.2013 03:19:10
- Zuletzt bearbeitet 22.10.2025 01:15:48
Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 do not properly handle onreadystatechange events in conjunction with page reloading, which allows remote attackers to cause...
CVE-2013-1987
- EPSS 0.89%
- Veröffentlicht 15.06.2013 19:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple integer overflows in X.org libXrender 0.9.7 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XRenderQueryFilters, (2) XRenderQueryFormats, and (3) XRenderQueryPictI...
CVE-2013-2064
- EPSS 0.94%
- Veröffentlicht 15.06.2013 19:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in X.org libxcb 1.9 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the read_packet function.
CVE-2013-1981
- EPSS 0.89%
- Veröffentlicht 15.06.2013 19:55:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple integer overflows in X.org libX11 1.5.99.901 (1.6 RC1) and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow via vectors related to the (1) XQueryFont, (2) _XF86BigfontQueryFont, (3) XListFontsWithInf...
CVE-2013-1862
- EPSS 41.76%
- Veröffentlicht 10.06.2013 17:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
mod_rewrite.c in the mod_rewrite module in the Apache HTTP Server 2.2.x before 2.2.25 writes data to a log file without sanitizing non-printable characters, which might allow remote attackers to execute arbitrary commands via an HTTP request containi...
CVE-2013-2852
- EPSS 0.24%
- Veröffentlicht 07.06.2013 14:03:20
- Zuletzt bearbeitet 11.04.2025 00:51:21
Format string vulnerability in the b43_request_firmware function in drivers/net/wireless/b43/main.c in the Broadcom B43 wireless driver in the Linux kernel through 3.9.4 allows local users to gain privileges by leveraging root access and including fo...
- EPSS 15.33%
- Veröffentlicht 29.05.2013 14:29:06
- Zuletzt bearbeitet 11.04.2025 00:51:21
schpw.c in the kpasswd service in kadmind in MIT Kerberos 5 (aka krb5) before 1.11.3 does not properly validate UDP packets before sending responses, which allows remote attackers to cause a denial of service (CPU and bandwidth consumption) via a for...
CVE-2007-6746
- EPSS 0.25%
- Veröffentlicht 21.05.2013 18:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
telepathy-idle before 0.1.15 does not verify (1) that the issuer is a trusted CA, (2) that the server hostname matches a domain name in the subject's Common Name (CN), or (3) the expiration date of the X.509 certificate, which allows man-in-the-middl...