|
278951
|
- |
|
gentoo
|
xdg-utils
|
Eval injection vulnerability in xdg-utils 1.1.0 RC1, when no supported desktop environment is identified, allows context-dependent attackers to execute arbitrary code via the URL argument to xdg-open.
|
CWE-77
Command Injection
|
CVE-2014-9622
|
2024-11-21 11:21 |
2015-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278952
|
- |
|
file_project
|
file
|
The ELF parser in file 5.16 through 5.21 allows remote attackers to cause a denial of service via a long string.
|
CWE-399
Resource Management Errors
|
CVE-2014-9621
|
2024-11-21 11:21 |
2015-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278953
|
- |
|
file_project
|
file
|
The ELF parser in file 5.08 through 5.21 allows remote attackers to cause a denial of service via a large number of notes.
|
CWE-399
Resource Management Errors
|
CVE-2014-9620
|
2024-11-21 11:21 |
2015-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278954
|
- |
|
videolan
|
vlc_media_player
|
The picture_Release function in misc/picture.c in VideoLAN VLC media player 2.1.5 allows remote attackers to execute arbitrary code or cause a denial of service (write access violation) via a crafted…
|
CWE-20
Improper Input Validation
|
CVE-2014-9598
|
2024-11-21 11:21 |
2015-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278955
|
- |
|
videolan
|
vlc_media_player
|
The picture_pool_Delete function in misc/picture_pool.c in VideoLAN VLC media player 2.1.5 allows remote attackers to execute arbitrary code or cause a denial of service (DEP violation and applicatio…
|
CWE-20
Improper Input Validation
|
CVE-2014-9597
|
2024-11-21 11:21 |
2015-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278956
|
- |
|
pivotal_software
|
rabbitmq
|
RabbitMQ before 3.4.0 allows remote attackers to bypass the loopback_users restriction via a crafted X-Forwareded-For header.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-9494
|
2024-11-21 11:21 |
2015-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278957
|
- |
|
illumos
|
illumos
|
The devzvol_readdir function in illumos does not check the return value of a strchr call, which allows remote attackers to cause a denial of service (NULL pointer dereference and panic) via unspecifi…
|
NVD-CWE-Other
|
CVE-2014-9491
|
2024-11-21 11:21 |
2015-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278958
|
- |
|
getsentry
|
raven-ruby
|
The numtok function in lib/raven/okjson.rb in the raven-ruby gem before 0.12.2 for Ruby allows remote attackers to cause a denial of service via a large exponent value in a scientific number.
|
CWE-399
Resource Management Errors
|
CVE-2014-9490
|
2024-11-21 11:21 |
2015-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278959
|
- |
|
ffmpeg canonical
|
ffmpeg ubuntu_linux
|
libavcodec/utvideodec.c in FFmpeg before 2.5.2 does not check for a zero value of a slice height, which allows remote attackers to cause a denial of service (out-of-bounds array access) or possibly h…
|
CWE-189
Numeric Errors
|
CVE-2014-9604
|
2024-11-21 11:21 |
2015-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278960
|
- |
|
ffmpeg
|
ffmpeg
|
The vmd_decode function in libavcodec/vmdvideo.c in FFmpeg before 2.5.2 does not validate the relationship between a certain length value and the frame width, which allows remote attackers to cause a…
|
CWE-20
Improper Input Validation
|
CVE-2014-9603
|
2024-11-21 11:21 |
2015-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|