|
287521
|
- |
|
linux
|
linux_kernel
|
The sctp_getsockopt_assoc_stats function in net/sctp/socket.c in the Linux kernel before 3.8.4 does not validate a size value before proceeding to a copy_from_user operation, which allows local users…
|
CWE-20
Improper Input Validation
|
CVE-2013-1828
|
2024-11-21 10:50 |
2013-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287522
|
- |
|
linux
|
linux_kernel
|
net/dccp/ccid.h in the Linux kernel before 3.5.4 allows local users to gain privileges or cause a denial of service (NULL pointer dereference and system crash) by leveraging the CAP_NET_ADMIN capabil…
|
NVD-CWE-Other
|
CVE-2013-1827
|
2024-11-21 10:50 |
2013-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287523
|
- |
|
linux
|
linux_kernel
|
The xfrm_state_netlink function in net/xfrm/xfrm_user.c in the Linux kernel before 3.5.7 does not properly handle error conditions in dump_one_state function calls, which allows local users to gain p…
|
NVD-CWE-Other
|
CVE-2013-1826
|
2024-11-21 10:50 |
2013-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287524
|
- |
|
linux
|
linux_kernel
|
The ioapic_read_indirect function in virt/kvm/ioapic.c in the Linux kernel through 3.8.4 does not properly handle a certain combination of invalid IOAPIC_REG_SELECT and IOAPIC_REG_WINDOW operations, …
|
CWE-20
Improper Input Validation
|
CVE-2013-1798
|
2024-11-21 10:50 |
2013-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287525
|
- |
|
linux
|
linux_kernel
|
Use-after-free vulnerability in arch/x86/kvm/x86.c in the Linux kernel through 3.8.4 allows guest OS users to cause a denial of service (host OS memory corruption) or possibly have unspecified other …
|
CWE-399
Resource Management Errors
|
CVE-2013-1797
|
2024-11-21 10:50 |
2013-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287526
|
- |
|
linux
|
linux_kernel
|
The kvm_set_msr_common function in arch/x86/kvm/x86.c in the Linux kernel through 3.8.4 does not ensure a required time_page alignment during an MSR_KVM_SYSTEM_TIME operation, which allows guest OS u…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-1796
|
2024-11-21 10:50 |
2013-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287527
|
- |
|
linux
|
linux_kernel
|
Race condition in the install_user_keyrings function in security/keys/process_keys.c in the Linux kernel before 3.8.3 allows local users to cause a denial of service (NULL pointer dereference and sys…
|
CWE-362
Race Condition
|
CVE-2013-1792
|
2024-11-21 10:50 |
2013-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287528
|
- |
|
matomo
|
matomo
|
Cross-site scripting (XSS) vulnerability in Piwik before 1.11 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2013-1844
|
2024-11-21 10:50 |
2013-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287529
|
- |
|
rubygems
|
command_wrap
|
command_wrap.rb in the command_wrap Gem for Ruby allows remote attackers to execute arbitrary commands via shell metacharacters in a URL or filename.
|
CWE-94
Code Injection
|
CVE-2013-1875
|
2024-11-21 10:50 |
2013-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287530
|
- |
|
realnetworks
|
realplayer realplayer_sp
|
Heap-based buffer overflow in RealNetworks RealPlayer before 16.0.1.18 and RealPlayer SP 1.0 through 1.1.5 allows remote attackers to execute arbitrary code via a malformed MP4 file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-1750
|
2024-11-21 10:50 |
2013-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|