|
181
|
9.8
10.0
|
CRITICAL
Network
|
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code via a crafted environment, a…
|
CWE-78
OS Command
|
CVE-2014-6271
|
cpe:2.3:o:suse:linux_enterprise_server:12:- cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_en…
|
|
|
|
|
2026-04-23 01:07
2014-09-25
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
182
|
-
4.3
|
MEDIUM
|
The kvm_iommu_map_pages function in virt/kvm/iommu.c in the Linux kernel through 3.16.1 miscalculates the number of pages during the handling of a mapping failure, which allows guest OS users to (1) …
|
CWE-189
Numeric Errors
|
CVE-2014-3601
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp2
|
|
|
|
|
2024-11-21 11:08
2014-09-1
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
183
|
-
7.1
|
HIGH
|
The sctp_assoc_update function in net/sctp/associola.c in the Linux kernel through 3.15.8, when SCTP authentication is enabled, allows remote attackers to cause a denial of service (NULL pointer dere…
|
CWE-476
NULL Pointer Dereference
|
CVE-2014-5077
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_enterprise_server:11:sp3
|
|
|
|
|
2024-11-21 11:11
2014-08-1
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
184
|
-
6.9
|
MEDIUM
|
The PPPoL2TP feature in net/l2tp/l2tp_ppp.c in the Linux kernel through 3.15.6 allows local users to gain privileges by leveraging data-structure differences between an l2tp socket and an inet socket.
|
CWE-269
Improper Privilege Management
|
CVE-2014-4943
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 11:11
2014-07-20
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
185
|
-
5.5
|
MEDIUM
|
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier, and 5.6.17 and earlier, allows remote authenticated users to affect integrity and availability via vectors …
|
NVD-CWE-noinfo
|
CVE-2014-4260
|
cpe:2.3:o:suse:linux_enterprise_server:12:- cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_en…
|
|
|
|
|
2024-11-21 11:09
2014-07-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
186
|
-
2.8
|
LOW
|
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via vectors related to ENFED.
|
NVD-CWE-noinfo
|
CVE-2014-4243
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_enterprise_server:11:sp3
|
|
|
|
|
2024-11-21 11:09
2014-07-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
187
|
-
6.5
|
MEDIUM
|
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier and 5.6.17 and earlier allows remote authenticated users to affect confidentiality, integrity, and availabil…
|
NVD-CWE-noinfo
|
CVE-2014-4258
|
cpe:2.3:o:suse:linux_enterprise_server:12:- cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_en…
|
|
|
|
|
2024-11-21 11:09
2014-07-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
188
|
-
3.3
|
LOW
|
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.6.17 and earlier allows remote authenticated users to affect availability via vectors related to SRSP.
|
NVD-CWE-noinfo
|
CVE-2014-4214
|
cpe:2.3:o:suse:linux_enterprise_server:11.0:sp3 cpe:2.3:o:suse:linux_enterprise_server:11.0:sp3
|
|
|
|
|
2024-11-21 11:09
2014-07-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
189
|
-
4.0
|
MEDIUM
|
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier allows remote authenticated users to affect availability via vectors related to SROPTZR.
|
NVD-CWE-noinfo
|
CVE-2014-4207
|
cpe:2.3:o:suse:linux_enterprise_server:12:- cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_en…
|
|
|
|
|
2024-11-21 11:09
2014-07-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
190
|
-
4.0
|
MEDIUM
|
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier allows remote authenticated users to affect availability via vectors related to ENARC.
|
NVD-CWE-noinfo
|
CVE-2014-2494
|
cpe:2.3:o:suse:linux_enterprise_server:12:- cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_en…
|
|
|
|
|
2024-11-21 11:06
2014-07-17
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|