|
267091
|
- |
|
ffmpeg
|
ffmpeg
|
The decode_uncompressed function in libavcodec/faxcompr.c in FFmpeg before 2.8.2 does not validate uncompressed runs, which allows remote attackers to cause a denial of service (out-of-bounds array a…
|
CWE-20
Improper Input Validation
|
CVE-2015-8218
|
2024-11-21 11:38 |
2015-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267092
|
- |
|
ffmpeg
|
ffmpeg
|
The ff_hevc_parse_sps function in libavcodec/hevc_ps.c in FFmpeg before 2.8.2 does not validate the Chroma Format Indicator, which allows remote attackers to cause a denial of service (out-of-bounds …
|
CWE-20
Improper Input Validation
|
CVE-2015-8217
|
2024-11-21 11:38 |
2015-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267093
|
- |
|
ffmpeg
|
ffmpeg
|
The ljpeg_decode_yuv_scan function in libavcodec/mjpegdec.c in FFmpeg before 2.8.2 omits certain width and height checks, which allows remote attackers to cause a denial of service (out-of-bounds arr…
|
CWE-17
Code
|
CVE-2015-8216
|
2024-11-21 11:38 |
2015-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267094
|
- |
|
linux
|
linux_kernel
|
net/ipv6/addrconf.c in the IPv6 stack in the Linux kernel before 4.0 does not validate attempted changes to the MTU value, which allows context-dependent attackers to cause a denial of service (packe…
|
CWE-20
Improper Input Validation
|
CVE-2015-8215
|
2024-11-21 11:38 |
2015-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267095
|
- |
|
xen oracle linux debian canonical
|
xen solaris vm_virtualbox linux_kernel debian_linux ubuntu_linux
|
The KVM subsystem in the Linux kernel through 4.2.6, and Xen 4.3.x through 4.6.x, allows guest OS users to cause a denial of service (host OS panic or hang) by triggering many #DB (aka Debug) excepti…
|
CWE-399
Resource Management Errors
|
CVE-2015-8104
|
2024-11-21 11:38 |
2015-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267096
|
- |
|
libpng fedoraproject suse opensuse debian redhat oracle apple canonical
|
libpng fedora linux_enterprise_desktop linux_enterprise_server leap opensuse debian_linux enterprise_linux_desktop enterprise_linux_server_aus enterprise_linux_workstation<…
|
Multiple buffer overflows in the (1) png_set_PLTE and (2) png_get_PLTE functions in libpng before 1.0.64, 1.1.x and 1.2.x before 1.2.54, 1.3.x and 1.4.x before 1.4.17, 1.5.x before 1.5.24, and 1.6.x …
|
CWE-120
Classic Buffer Overflow
|
CVE-2015-8126
|
2024-11-21 11:38 |
2015-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267097
|
- |
|
symantec
|
endpoint_protection
|
Untrusted search path vulnerability in the client in Symantec Endpoint Protection (SEP) 12.1 before 12.1-RU6-MP3 allows local users to gain privileges via a Trojan horse DLL in a client install packa…
|
NVD-CWE-Other
|
CVE-2015-8113
|
2024-11-21 11:38 |
2015-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267098
|
- |
|
opensuse roundcube
|
opensuse webmail
|
Cross-site scripting (XSS) vulnerability in program/js/app.js in Roundcube webmail before 1.0.7 and 1.1.x before 1.1.3 allows remote authenticated users to inject arbitrary web script or HTML via the…
|
CWE-79
Cross-site Scripting
|
CVE-2015-8105
|
2024-11-21 11:38 |
2015-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267099
|
- |
|
net-snmp
|
net-snmp
|
The net-snmp package in OpenBSD through 5.8 uses 0644 permissions for snmpd.conf, which allows local users to obtain sensitive community information by reading this file.
|
CWE-200
Information Exposure
|
CVE-2015-8100
|
2024-11-21 11:38 |
2015-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267100
|
- |
|
google
|
picasa
|
Integer overflow in Google Picasa 3.9.140 Build 239 and Build 248 allows remote attackers to execute arbitrary code via unspecified vectors related to "phase one 0x412 tag," which triggers a heap-bas…
|
CWE-119 CWE-189
Incorrect Access of Indexable Resource ('Range Error') Numeric Errors
|
CVE-2015-8096
|
2024-11-21 11:38 |
2015-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|