|
269291
|
4.6 |
MEDIUM
Physics
|
novell linux
|
suse_linux_enterprise_server suse_linux_enterprise_debuginfo suse_linux_enterprise_software_development_kit suse_linux_enterprise_real_time_extension linux_kernel
|
The clie_5_attach function in drivers/usb/serial/visor.c in the Linux kernel through 4.4.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system cras…
|
NVD-CWE-Other
|
CVE-2015-7566
|
2024-11-21 11:36 |
2016-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269292
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The keyctl_read_key function in security/keys/keyctl.c in the Linux kernel before 4.3.4 does not properly use a semaphore, which allows local users to cause a denial of service (NULL pointer derefere…
|
CWE-362 NVD-CWE-Other
Race Condition
|
CVE-2015-7550
|
2024-11-21 11:36 |
2016-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269293
|
6.5 |
MEDIUM
Local
|
linux fedoraproject debian canonical
|
linux_kernel fedora debian_linux ubuntu_linux
|
arch/x86/kvm/x86.c in the Linux kernel before 4.4 does not reset the PIT counter values during state restoration, which allows guest OS users to cause a denial of service (divide-by-zero error and ho…
|
CWE-369
Divide By Zero
|
CVE-2015-7513
|
2024-11-21 11:36 |
2016-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269294
|
7.5 |
HIGH
Network
|
jenkins redhat
|
jenkins openshift
|
The Plugins Manager in Jenkins before 1.640 and LTS before 1.625.2 does not verify checksums for plugin files referenced in update site data, which makes it easier for man-in-the-middle attackers to …
|
CWE-345
Insufficient Verification of Data Authenticity
|
CVE-2015-7539
|
2024-11-21 11:36 |
2016-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269295
|
7.5 |
HIGH
Network
|
openstack oracle
|
keystonemiddleware keystone solaris
|
The identity service in OpenStack Identity (Keystone) before 2015.1.3 (Kilo) and 8.0.x before 8.0.2 (Liberty) and keystonemiddleware (formerly python-keystoneclient) before 1.5.4 (Kilo) and Liberty b…
|
CWE-522
Insufficiently Protected Credentials
|
CVE-2015-7546
|
2024-11-21 11:36 |
2016-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269296
|
8.8 |
HIGH
Network
|
jenkins redhat
|
jenkins openshift
|
Jenkins before 1.640 and LTS before 1.625.2 allow remote attackers to bypass the CSRF protection mechanism via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2015-7538
|
2024-11-21 11:36 |
2016-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269297
|
8.8 |
HIGH
Network
|
redhat jenkins
|
openshift jenkins
|
Cross-site request forgery (CSRF) vulnerability in Jenkins before 1.640 and LTS before 1.625.2 allows remote attackers to hijack the authentication of administrators for requests that have unspecifie…
|
CWE-352
Origin Validation Error
|
CVE-2015-7537
|
2024-11-21 11:36 |
2016-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269298
|
5.4 |
MEDIUM
Network
|
jenkins
|
jenkins
|
Cross-site scripting (XSS) vulnerability in Jenkins before 1.640 and LTS before 1.625.2 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors related to wor…
|
CWE-79
Cross-site Scripting
|
CVE-2015-7536
|
2024-11-21 11:36 |
2016-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269299
|
8.3 |
HIGH
Network
|
apache
|
hive
|
The authorization framework in Apache Hive 1.0.0, 1.0.1, 1.1.0, 1.1.1, 1.2.0 and 1.2.1, on clusters protected by Ranger and SqlStdHiveAuthorization, allows attackers to bypass intended parent table a…
|
CWE-287
Improper Authentication
|
CVE-2015-7521
|
2024-11-21 11:36 |
2016-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269300
|
7.5 |
HIGH
Network
|
ibm
|
jazz_reporting_service
|
Report Builder in IBM Jazz Reporting Service (JRS) 5.x before 5.0.2-Rational-CLM-ifix011 and 6.0 before 6.0.0-Rational-CLM-ifix005 allows remote attackers to cause a denial of service (Report Builder…
|
NVD-CWE-noinfo
|
CVE-2015-7464
|
2024-11-21 11:36 |
2016-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|