|
280351
|
- |
|
linux
|
linux_kernel
|
arch/x86/kvm/vmx.c in the KVM subsystem in the Linux kernel before 3.12 does not have an exit handler for the INVEPT instruction, which allows guest OS users to cause a denial of service (guest OS cr…
|
CWE-20
Improper Input Validation
|
CVE-2014-3645
|
2024-11-21 11:08 |
2014-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280352
|
4.7 |
MEDIUM
Local
|
linux redhat canonical debian
|
linux_kernel enterprise_linux ubuntu_linux debian_linux
|
Race condition in the __kvm_migrate_pit_timer function in arch/x86/kvm/i8254.c in the KVM subsystem in the Linux kernel through 3.17.2 allows guest OS users to cause a denial of service (host OS cras…
|
CWE-362
Race Condition
|
CVE-2014-3611
|
2024-11-21 11:08 |
2014-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280353
|
5.5 |
MEDIUM
Local
|
linux canonical debian opensuse suse
|
linux_kernel ubuntu_linux debian_linux evergreen suse_linux_enterprise_server
|
The WRMSR processing functionality in the KVM subsystem in the Linux kernel through 3.17.2 does not properly handle the writing of a non-canonical address to a model-specific register, which allows g…
|
NVD-CWE-noinfo
|
CVE-2014-3610
|
2024-11-21 11:08 |
2014-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280354
|
- |
|
redhat canonical libreoffice opensuse
|
enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server ubuntu_linux libreoffice opensuse
|
Use-after-free vulnerability in the socket manager of Impress Remote in LibreOffice 4.x before 4.2.7 and 4.3.x before 4.3.3 allows remote attackers to cause a denial of service (crash) or possibly ex…
|
NVD-CWE-Other
|
CVE-2014-3693
|
2024-11-21 11:08 |
2014-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280355
|
- |
|
debian qemu redhat canonical
|
debian_linux qemu enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux_hpc_node ubuntu_linux
|
The sosendto function in slirp/udp.c in QEMU before 2.1.2 allows local users to cause a denial of service (NULL pointer dereference) by sending a udp packet with a value of 0 in the source port and a…
|
CWE-476
NULL Pointer Dereference
|
CVE-2014-3640
|
2024-11-21 11:08 |
2014-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280356
|
- |
|
symantec
|
endpoint_protection_manager
|
ConsoleServlet in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU5 allows remote attackers to write to arbitrary files via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2014-3439
|
2024-11-21 11:08 |
2014-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280357
|
- |
|
symantec
|
endpoint_protection_manager
|
Multiple cross-site scripting (XSS) vulnerabilities in console interface scripts in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU5 allow remote attackers to inject arbitrary web script o…
|
CWE-79
Cross-site Scripting
|
CVE-2014-3438
|
2024-11-21 11:08 |
2014-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280358
|
- |
|
symantec
|
endpoint_protection_manager
|
The management console in Symantec Endpoint Protection Manager (SEPM) 12.1 before RU5 allows remote attackers to read arbitrary files or send TCP requests to intranet servers via XML data containing …
|
NVD-CWE-Other
|
CVE-2014-3437
|
2024-11-21 11:08 |
2014-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280359
|
- |
|
php debian canonical
|
php debian_linux ubuntu_linux
|
The donote function in readelf.c in file through 5.20, as used in the Fileinfo component in PHP 5.4.34, does not ensure that sufficient note headers are present, which allows remote attackers to caus…
|
CWE-20
Improper Input Validation
|
CVE-2014-3710
|
2024-11-21 11:08 |
2014-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280360
|
- |
|
qemu
|
qemu
|
hw/usb/bus.c in QEMU 1.6.2 allows remote attackers to execute arbitrary code via crafted savevm data, which triggers a heap-based buffer overflow, related to "USB post load checks."
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2014-3461
|
2024-11-21 11:08 |
2014-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|