|
221
|
-
9.3
|
HIGH
|
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 28.0 and SeaMonkey before 2.25 allow remote attackers to cause a denial of service (memory corruption and applicat…
|
NVD-CWE-noinfo
|
CVE-2014-1494
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_enterprise_server:11:sp3
|
|
|
|
|
2024-11-21 11:04
2014-03-19
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
222
|
-
6.1
|
MEDIUM
|
The ip6_route_add function in net/ipv6/route.c in the Linux kernel through 3.13.6 does not properly count the addition of routes, which allows remote attackers to cause a denial of service (memory co…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-2309
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_enterprise_server:11:-
|
|
|
|
|
2024-11-21 11:06
2014-03-11
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
223
|
-
4.9
|
MEDIUM
|
The security_context_to_sid_core function in security/selinux/ss/services.c in the Linux kernel before 3.13.4 allows local users to cause a denial of service (system crash) by leveraging the CAP_MAC_…
|
CWE-20
Improper Input Validation
|
CVE-2014-1874
|
cpe:2.3:o:suse:linux_enterprise_server:10:sp4
|
|
|
|
|
2024-11-21 11:05
2014-02-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
224
|
-
7.2
|
HIGH
|
The cifs_iovec_write function in fs/cifs/file.c in the Linux kernel through 3.13.5 does not properly handle uncached write operations that copy fewer than the requested number of bytes, which allows …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-0069
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 11:01
2014-02-28
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
225
|
-
4.3
|
MEDIUM
|
Mozilla Network Security Services (NSS) before 3.15.4, as used in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, SeaMonkey before 2.24, and other products, does n…
|
CWE-326
Inadequate Encryption Strength
|
CVE-2014-1491
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_enterprise_server:11:sp3
|
|
|
|
|
2024-11-21 11:04
2014-02-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
226
|
-
9.3
|
HIGH
|
Race condition in libssl in Mozilla Network Security Services (NSS) before 3.15.4, as used in Mozilla Firefox before 27.0, Firefox ESR 24.x before 24.3, Thunderbird before 24.3, SeaMonkey before 2.24…
|
CWE-362
Race Condition
|
CVE-2014-1490
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_enterprise_server:11:sp3
|
|
|
|
|
2024-11-21 11:04
2014-02-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
227
|
-
4.3
|
MEDIUM
|
Mozilla Firefox before 27.0 does not properly restrict access to about:home buttons by script on other pages, which allows user-assisted remote attackers to cause a denial of service (session restore…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-1489
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_enterprise_server:11:sp3
|
|
|
|
|
2024-11-21 11:04
2014-02-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
228
|
-
10.0
|
HIGH
|
The Web workers implementation in Mozilla Firefox before 27.0 and SeaMonkey before 2.24 allows remote attackers to execute arbitrary code via vectors involving termination of a worker process that ha…
|
NVD-CWE-noinfo
|
CVE-2014-1488
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_enterprise_server:11:sp3
|
|
|
|
|
2024-11-21 11:04
2014-02-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
229
|
-
7.5
|
HIGH
|
The Content Security Policy (CSP) implementation in Mozilla Firefox before 27.0 and SeaMonkey before 2.24 operates on XSLT stylesheets according to style-src directives instead of script-src directiv…
|
NVD-CWE-noinfo
|
CVE-2014-1485
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_enterprise_server:11:sp3
|
|
|
|
|
2024-11-21 11:04
2014-02-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
230
|
-
5.0
|
MEDIUM
|
Mozilla Firefox before 27.0 on Android 4.2 and earlier creates system-log entries containing profile paths, which allows attackers to obtain sensitive information via a crafted application.
|
CWE-200
Information Exposure
|
CVE-2014-1484
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp3 cpe:2.3:o:suse:linux_enterprise_server:11:sp3
|
|
|
|
|
2024-11-21 11:04
2014-02-6
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|