|
286201
|
- |
|
nagios redhat
|
nagios openstack
|
rss-newsfeed.php in Nagios Core 3.4.4, 3.5.1, and earlier, when MAGPIE_CACHE_ON is set to 1, allows local users to overwrite arbitrary files via a symlink attack on /tmp/magpie_cache.
|
CWE-59
Link Following
|
CVE-2013-4214
|
2024-11-21 10:55 |
2013-11-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286202
|
- |
|
novell graphicsmagick fedoraproject
|
suse_linux_enterprise_debuginfo suse_studio_onsite suse_linux_enterprise_software_development_kit graphicsmagick fedora
|
The ExportAlphaQuantumType function in export.c in GraphicsMagick before 1.3.18 might allow remote attackers to cause a denial of service (crash) via vectors related to exporting the alpha of an 8-bi…
|
NVD-CWE-noinfo
|
CVE-2013-4589
|
2024-11-21 10:55 |
2013-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286203
|
- |
|
haxx
|
curl libcurl
|
cURL and libcurl 7.18.0 through 7.32.0, when built with OpenSSL, disables the certificate CN and SAN name field verification (CURLOPT_SSL_VERIFYHOST) when the digital signature verification (CURLOPT_…
|
CWE-310
Cryptographic Issues
|
CVE-2013-4545
|
2024-11-21 10:55 |
2013-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286204
|
- |
|
redhat fedoraproject
|
enterprise_linux directory_server 389_directory_server
|
389 Directory Server 1.2.11.15 (aka Red Hat Directory Server before 8.2.11-14) allows remote authenticated users to cause a denial of service (crash) via multiple @ characters in a GER attribute list…
|
CWE-20
Improper Input Validation
|
CVE-2013-4485
|
2024-11-21 10:55 |
2013-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286205
|
- |
|
redhat scientificlinux
|
enterprise_linux luci
|
Untrusted search path vulnerability in python-paste-script (aka paster) in Luci 0.26.0, when started using the initscript, allows local users to gain privileges via a Trojan horse .egg-info file in t…
|
NVD-CWE-Other
|
CVE-2013-4482
|
2024-11-21 10:55 |
2013-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286206
|
- |
|
redhat scientificlinux
|
enterprise_linux luci
|
Race condition in Luci 0.26.0 creates /var/lib/luci/etc/luci.ini with world-readable permissions before restricting the permissions, which allows local users to read the file and obtain sensitive inf…
|
CWE-362
Race Condition
|
CVE-2013-4481
|
2024-11-21 10:55 |
2013-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286207
|
- |
|
canonical freedesktop
|
ubuntu_linux poppler
|
Format string vulnerability in the extractPages function in utils/pdfseparate.cc in poppler before 0.24.3 allows remote attackers to cause a denial of service (crash) via format string specifiers in …
|
CWE-20
Improper Input Validation
|
CVE-2013-4474
|
2024-11-21 10:55 |
2013-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286208
|
- |
|
freedesktop canonical
|
poppler ubuntu_linux
|
Stack-based buffer overflow in the extractPages function in utils/pdfseparate.cc in poppler before 0.24.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary c…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-4473
|
2024-11-21 10:55 |
2013-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286209
|
- |
|
lighttpd debian opensuse
|
lighttpd debian_linux opensuse
|
lighttpd before 1.4.33 does not check the return value of the (1) setuid, (2) setgid, or (3) setgroups functions, which might cause lighttpd to run as root if it is restarted and allows remote attack…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-4559
|
2024-11-21 10:55 |
2013-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286210
|
- |
|
lighttpd debian opensuse
|
lighttpd debian_linux opensuse
|
Use-after-free vulnerability in lighttpd before 1.4.33 allows remote attackers to cause a denial of service (segmentation fault and crash) via unspecified vectors that trigger FAMMonitorDirectory fai…
|
CWE-416
Use After Free
|
CVE-2013-4560
|
2024-11-21 10:55 |
2013-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|