- EPSS 0.78%
- Veröffentlicht 12.12.2014 15:59:09
- Zuletzt bearbeitet 12.04.2025 10:46:40
OpenStack Dashboard (Horizon) before 2014.1.3 and 2014.2.x before 2014.2.1 does not properly handle session records when using a db or memcached session engine, which allows remote attackers to cause a denial of service via a large number of requests...
CVE-2014-8488
- EPSS 0.26%
- Veröffentlicht 10.12.2014 01:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
Cross-site scripting (XSS) vulnerability in the administrator panel in Yourls 1.7 allows remote attackers to inject arbitrary web script or HTML via a URL that is processed by the Shorten functionality.
CVE-2014-9274
- EPSS 5.94%
- Veröffentlicht 09.12.2014 23:59:10
- Zuletzt bearbeitet 12.04.2025 10:46:40
UnRTF allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code as demonstrated by a file containing the string "{\cb-999999999".
CVE-2014-8737
- EPSS 0.06%
- Veröffentlicht 09.12.2014 23:59:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple directory traversal vulnerabilities in GNU binutils 2.24 and earlier allow local users to delete arbitrary files via a .. (dot dot) or full path name in an archive to (1) strip or (2) objcopy or create arbitrary files via (3) a .. (dot dot) ...
CVE-2014-8504
- EPSS 4.45%
- Veröffentlicht 09.12.2014 23:59:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
Stack-based buffer overflow in the srec_scan function in bfd/srec.c in GNU binutils 2.24 and earlier allows remote attackers to cause a denial of service (crash) and possibly have other unspecified impact via a crafted file.
CVE-2014-8503
- EPSS 9.96%
- Veröffentlicht 09.12.2014 23:59:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
Stack-based buffer overflow in the ihex_scan function in bfd/ihex.c in GNU binutils 2.24 and earlier allows remote attackers to cause a denial of service (crash) and possibly have other unspecified impact via a crafted ihex file.
CVE-2014-8502
- EPSS 8.37%
- Veröffentlicht 09.12.2014 23:59:04
- Zuletzt bearbeitet 12.04.2025 10:46:40
Heap-based buffer overflow in the pe_print_edata function in bfd/peXXigen.c in GNU binutils 2.24 and earlier allows remote attackers to cause a denial of service (crash) and possibly have other unspecified impact via a truncated export table in a PE ...
CVE-2014-8501
- EPSS 6.12%
- Veröffentlicht 09.12.2014 23:59:03
- Zuletzt bearbeitet 12.04.2025 10:46:40
The _bfd_XXi_swap_aouthdr_in function in bfd/peXXigen.c in GNU binutils 2.24 and earlier allows remote attackers to cause a denial of service (out-of-bounds write) and possibly have other unspecified impact via a crafted NumberOfRvaAndSizes field in ...
CVE-2014-8485
- EPSS 5.87%
- Veröffentlicht 09.12.2014 23:59:01
- Zuletzt bearbeitet 12.04.2025 10:46:40
The setup_group function in bfd/elf.c in libbfd in GNU binutils 2.24 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted section group headers in an ELF file.
- EPSS 2.77%
- Veröffentlicht 09.12.2014 23:59:00
- Zuletzt bearbeitet 12.04.2025 10:46:40
The srec_scan function in bfd/srec.c in libdbfd in GNU binutils before 2.25 allows remote attackers to cause a denial of service (out-of-bounds read) via a small S-record.