Total
11483 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2014-0765 | 1 Advantech | 1 Advantech Webaccess | 2015-07-09 | 7.5 HIGH | N/A |
Stack-based buffer overflow in Advantech WebAccess before 7.2 allows remote attackers to execute arbitrary code via a long GotoCmd argument. | |||||
CVE-2014-0766 | 1 Advantech | 1 Advantech Webaccess | 2015-07-09 | 7.5 HIGH | N/A |
Stack-based buffer overflow in Advantech WebAccess before 7.2 allows remote attackers to execute arbitrary code via a long NodeName2 argument. | |||||
CVE-2014-0767 | 1 Advantech | 1 Advantech Webaccess | 2015-07-09 | 7.5 HIGH | N/A |
Stack-based buffer overflow in Advantech WebAccess before 7.2 allows remote attackers to execute arbitrary code via a long AccessCode argument. | |||||
CVE-2014-0768 | 1 Advantech | 1 Advantech Webaccess | 2015-07-09 | 7.5 HIGH | N/A |
Stack-based buffer overflow in Advantech WebAccess before 7.2 allows remote attackers to execute arbitrary code via a long AccessCode2 argument. | |||||
CVE-2014-0764 | 1 Advantech | 1 Advantech Webaccess | 2015-07-09 | 7.5 HIGH | N/A |
Stack-based buffer overflow in Advantech WebAccess before 7.2 allows remote attackers to execute arbitrary code via a long NodeName parameter. | |||||
CVE-2015-4590 | 1 Arduino Json Project | 1 Arduino Json | 2015-06-23 | 5.0 MEDIUM | N/A |
The extractFrom function in Internals/QuotedString.cpp in Arduino JSON before 4.5 allows remote attackers to cause a denial of service (crash) via a JSON string with a \ (backslash) followed by a terminator, as demonstrated by "\\\0", which triggers a buffer overflow and over-read. | |||||
CVE-2015-0120 | 1 Ibm | 1 Tivoli Storage Manager Fastback | 2015-05-26 | 7.5 HIGH | N/A |
Buffer overflow in the FastBackMount process in IBM Tivoli Storage Manager FastBack 6.1 before 6.1.11.1 has unspecified impact and remote attack vectors. | |||||
CVE-2014-3186 | 2 Google, Linux | 2 Nexus 7, Linux Kernel | 2015-05-13 | 6.9 MEDIUM | N/A |
Buffer overflow in the picolcd_raw_event function in devices/hid/hid-picolcd_core.c in the PicoLCD HID device driver in the Linux kernel through 3.16.3, as used in Android on Nexus 7 devices, allows physically proximate attackers to cause a denial of service (system crash) or possibly execute arbitrary code via a crafted device that sends a large report. | |||||
CVE-2014-5256 | 1 Nodejs | 1 Nodejs | 2015-05-11 | 5.0 MEDIUM | N/A |
Node.js 0.8 before 0.8.28 and 0.10 before 0.10.30 does not consider the possibility of recursive processing that triggers V8 garbage collection in conjunction with a V8 interrupt, which allows remote attackers to cause a denial of service (memory corruption and application crash) via deep JSON objects whose parsing lets this interrupt mask an overflow of the program stack. | |||||
CVE-2014-3185 | 1 Linux | 1 Linux Kernel | 2015-05-11 | 6.9 MEDIUM | N/A |
Multiple buffer overflows in the command_port_read_callback function in drivers/usb/serial/whiteheat.c in the Whiteheat USB Serial Driver in the Linux kernel before 3.16.2 allow physically proximate attackers to execute arbitrary code or cause a denial of service (memory corruption and system crash) via a crafted device that provides a large amount of (1) EHCI or (2) XHCI data associated with a bulk response. | |||||
CVE-2014-8626 | 1 Php | 1 Php | 2015-04-29 | 7.5 HIGH | N/A |
Stack-based buffer overflow in the date_from_ISO8601 function in ext/xmlrpc/libxmlrpc/xmlrpc.c in PHP before 5.2.7 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code by including a timezone field in a date, leading to improper XML-RPC encoding. | |||||
CVE-2014-9050 | 1 Clamav | 1 Clamav | 2015-04-29 | 5.0 MEDIUM | N/A |
Heap-based buffer overflow in the cli_scanpe function in libclamav/pe.c in ClamAV before 0.98.5 allows remote attackers to cause a denial of service (crash) via a crafted y0da Crypter PE file. | |||||
CVE-2012-5451 | 1 Tvmobili | 1 Tvmobili | 2015-04-27 | 5.0 MEDIUM | N/A |
Multiple stack-based buffer overflows in HttpUtils.dll in TVMOBiLi before 2.1.0.3974 allow remote attackers to cause a denial of service (tvMobiliService service crash) via a long string in a (1) GET or (2) HEAD request to TCP port 30888. | |||||
CVE-2015-0907 | 1 Lhaplus | 1 Lhaplus | 2015-04-15 | 6.8 MEDIUM | N/A |
Buffer overflow in Lhaplus before 1.70 allows remote attackers to execute arbitrary code via a crafted archive. | |||||
CVE-2015-0903 | 1 Hidemaru | 1 Editor | 2015-04-06 | 7.5 HIGH | N/A |
Buffer overflow in Saitoh Kikaku Maruo Editor 8.51 and earlier allows remote attackers to execute arbitrary code via a crafted .hmbook file. | |||||
CVE-2015-0838 | 2 Debian, Dulwich Project | 2 Debian Linux, Dulwich | 2015-03-31 | 7.5 HIGH | N/A |
Buffer overflow in the C implementation of the apply_delta function in _pack.c in Dulwich before 0.9.9 allows remote attackers to execute arbitrary code via a crafted pack file. | |||||
CVE-2015-2785 | 1 Gnome | 1 Byzanz | 2015-03-30 | 7.5 HIGH | N/A |
The GIF encoder in Byzanz allows remote attackers to cause a denial of service (out-of-bounds heap write and crash) or possibly execute arbitrary code via a crafted Byzanz debug data recording (ByzanzRecording file) to the byzanz-playback command. | |||||
CVE-2014-9205 | 1 Microsys | 1 Promotic | 2015-03-30 | 7.5 HIGH | N/A |
Stack-based buffer overflow in the PmBase64Decode function in an unspecified demonstration application in MICROSYS PROMOTIC stable before 8.2.19 and PROMOTIC development before 8.3.2 allows remote attackers to execute arbitrary code by providing a large amount of data. | |||||
CVE-2014-3181 | 1 Linux | 1 Linux Kernel | 2015-03-25 | 6.9 MEDIUM | N/A |
Multiple stack-based buffer overflows in the magicmouse_raw_event function in drivers/hid/hid-magicmouse.c in the Magic Mouse HID driver in the Linux kernel through 3.16.3 allow physically proximate attackers to cause a denial of service (system crash) or possibly execute arbitrary code via a crafted device that provides a large amount of (1) EHCI or (2) XHCI data associated with an event. | |||||
CVE-2013-2899 | 1 Linux | 1 Linux Kernel | 2015-03-25 | 4.7 MEDIUM | N/A |
drivers/hid/hid-picolcd_core.c in the Human Interface Device (HID) subsystem in the Linux kernel through 3.11, when CONFIG_HID_PICOLCD is enabled, allows physically proximate attackers to cause a denial of service (NULL pointer dereference and OOPS) via a crafted device. |