|
286301
|
- |
|
gnupg
|
gnupg
|
GnuPG 1.4.x, 2.0.x, and 2.1.x treats a key flags subpacket with all bits cleared (no usage permitted) as if it has all bits set (all usage permitted), which might allow remote attackers to bypass int…
|
CWE-310
Cryptographic Issues
|
CVE-2013-4351
|
2024-11-21 10:55 |
2013-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286302
|
- |
|
xinetd redhat
|
xinetd enterprise_linux
|
xinetd does not enforce the user and group configuration directives for TCPMUX services, which causes these services to be run as root and makes it easier for remote attackers to gain privileges by l…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-4342
|
2024-11-21 10:55 |
2013-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286303
|
- |
|
restlet
|
restlet
|
The default configuration of the ObjectRepresentation class in Restlet before 2.1.4 deserializes objects from untrusted sources, which allows remote attackers to execute arbitrary Java code via a ser…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2013-4271
|
2024-11-21 10:55 |
2013-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286304
|
- |
|
restlet
|
restlet
|
The default configuration of the ObjectRepresentation class in Restlet before 2.1.4 deserializes objects from untrusted sources using the Java XMLDecoder, which allows remote attackers to execute arb…
|
CWE-16 CWE-91
Configuration Blind XPath Injection
|
CVE-2013-4221
|
2024-11-21 10:55 |
2013-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286305
|
- |
|
xen
|
xen
|
Xen 4.3.x writes hypervisor mappings to certain shadow pagetables when live migration is performed on hosts with more than 5TB of RAM, which allows local 64-bit PV guests to read or write to invalid …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-4356
|
2024-11-21 10:55 |
2013-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286306
|
- |
|
gnu redhat
|
glibc enterprise_linux
|
Multiple integer overflows in malloc/malloc.c in the GNU C Library (aka glibc or libc6) 2.18 and earlier allow context-dependent attackers to cause a denial of service (heap corruption) via a large v…
|
CWE-189
Numeric Errors
|
CVE-2013-4332
|
2024-11-21 10:55 |
2013-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286307
|
- |
|
gnu
|
glibc
|
sysdeps/posix/readdir_r.c in the GNU C Library (aka glibc or libc6) 2.18 and earlier allows context-dependent attackers to cause a denial of service (out-of-bounds write and crash) or possibly execut…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-4237
|
2024-11-21 10:55 |
2013-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286308
|
- |
|
sebastien_corbin
|
make_meeting_scheduler_module
|
The Make Meeting Scheduler module 6.x-1.x before 6.x-1.3 for Drupal allows remote attackers to bypass intended access restrictions for a poll via a direct request to the node's URL instead of the has…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-4379
|
2024-11-21 10:55 |
2013-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286309
|
- |
|
call-cc
|
chicken
|
Buffer overflow in the "read-string!" procedure in the "extras" unit in CHICKEN stable before 4.8.0.5 and development snapshots before 4.8.3 allows remote attackers to cause a denial of service (memo…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-4385
|
2024-11-21 10:55 |
2013-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
286310
|
- |
|
google_site_search_project
|
google_site_search_module
|
Cross-site scripting (XSS) vulnerability in Google Site Search module 6.x-1.x before 6.x-1.4 and 7.x-1.x before 7.x-1.10 for Drupal allows remote attackers to inject arbitrary web script or HTML by c…
|
CWE-79
Cross-site Scripting
|
CVE-2013-4384
|
2024-11-21 10:55 |
2013-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|