Unknown · CVSS Not scored
(1) DL and (2) Fiddle in Ruby 1.9 before 1.9.3 patchlevel 426, and 2.0 before 2.0.0 patchlevel 195, do not perform taint checking for native functions, which allows context-dependent attackers to bypass intended $SAFE level restrictions.
Published Nov 2, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
MediaWiki before 1.19.6 and 1.20.x before 1.20.5 does not allow extensions to prevent password changes without using both Special:PasswordReset and Special:ChangePassword, which allows remote attackers to bypass the intended restrictions of an extension that only implements one of these blocks.
Published Nov 15, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
mod_ruid2 before 0.9.8 improperly handles file descriptors which allows remote attackers to bypass security using a CGI script to break out of the chroot.
Published Nov 8, 2019 · Updated Aug 6, 2024
Unknown · CVSS Not scored
An access control issue in MantisBT before 1.2.13 allows users with "Reporter" permissions to change any issue to "New".
Published Nov 7, 2019 · Updated Aug 6, 2024
Unknown · CVSS Not scored
MediaWiki before 1.19.4 and 1.20.x before 1.20.3 allows remote attackers to cause a denial of service (application crash) by sending a specially crafted request.
Published Nov 20, 2019 · Updated Aug 6, 2024
Unknown · CVSS Not scored
tuned before 2.x allows local users to kill running processes due to insecure permissions with tuned's ktune service.
Published Nov 8, 2019 · Updated Aug 6, 2024
Unknown · CVSS Not scored
MediaWiki before 1.19.4 and 1.20.x before 1.20.3 contains an error in the api.php script which allows remote attackers to obtain sensitive information.
Published Nov 20, 2019 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Gambas before 3.4.0 allows remote attackers to move or manipulate directory contents or perform symlink attacks due to the creation of insecure temporary directories.
Published Nov 7, 2019 · Updated Aug 6, 2024
Unknown · CVSS Not scored
util-linux/mdev.c in BusyBox before 1.21.0 uses 0777 permissions for parent directories when creating nested directories under /dev/, which allows local users to have unknown impact and attack vectors.
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The web server Monkeyd produces a world-readable log (/var/log/monkeyd/master.log) on gentoo.
Published Nov 7, 2019 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Integer overflow in Mozilla Network Security Services (NSS) 3.15 before 3.15.3 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a large size value.
Published Nov 16, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
TWiki before 5.1.4 allows remote attackers to execute arbitrary shell commands by sending a crafted '%MAKETEXT{}%' parameter value containing Perl backtick characters.
Published Nov 7, 2019 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Foswiki before 1.1.8 contains a code injection vulnerability in the MAKETEXT macro.
Published Nov 1, 2019 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Lintian before 2.5.12 allows remote attackers to gather information about the "host" system using crafted symlinks.
Published Nov 7, 2019 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Cross-site Scripting (XSS) in Mahara before 1.5.9 and 1.6.x before 1.6.4 allows remote attackers to inject arbitrary web script or HTML via the TinyMCE editor.
Published Nov 7, 2019 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The setup_server_realm function in main.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.10.7, when multiple realms are configured, allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted request.
Published Nov 16, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
do_tgs_req.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.11 before 1.11.4, when a single-component realm name is used, allows remote authenticated users to cause a denial of service (daemon crash) via a TGS-REQ request that triggers an attempted cross-realm referral for a host-based service principal.
Published Nov 20, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
ldap-git-backup before 1.0.4 exposes password hashes due to incorrect directory permissions.
Published Nov 7, 2019 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Heap-based buffer overflow in Microsoft Office 2003 SP3 and 2007 SP3 allows remote attackers to execute arbitrary code via a crafted WordPerfect document (.wpd) file, aka "Word Heap Overwrite Vulnerability."
Published Nov 13, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Stack-based buffer overflow in Microsoft Office 2003 SP3, 2007 SP3, 2010 SP1 and SP2, 2013, and 2013 RT allows remote attackers to execute arbitrary code via a crafted WordPerfect document (.wpd) file, aka "Word Stack Buffer Overwrite Vulnerability."
Published Nov 13, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
maas-import-pxe-files in MAAS before 13.10 does not verify the integrity of downloaded files, which allows remote attackers to modify these files via a man-in-the-middle (MITM) attack.
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Multiple integer overflows in the (1) old_codec37 and (2) old_codec47 functions in libavcodec/sanm.c in FFmpeg before 1.1.3 allow remote attackers to have an unspecified impact via crafted LucasArts Smush data, which triggers an out-of-bounds array access.
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The ff_add_png_paeth_prediction function in libavcodec/pngdec.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecified impact via a crafted PNG image, related to an out-of-bounds array access.
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The old_codec37 function in libavcodec/sanm.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecified impact via crafted LucasArts Smush data that has a large size when decoded, related to an out-of-bounds array access.
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The advance_line function in libavcodec/targa.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecified impact via crafted Targa image data, related to an out-of-bounds array access.
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The (1) doubles2str and (2) shorts2str functions in libavcodec/tiff.c in FFmpeg before 1.1.3 allow remote attackers to have an unspecified impact via a crafted TIFF image, related to an out-of-bounds array access.
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The gif_copy_img_rect function in libavcodec/gifdec.c in FFmpeg before 1.1.2 performs an incorrect calculation for an "end pointer," which allows remote attackers to have an unspecified impact via crafted GIF data that triggers an out-of-bounds array access.
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The avcodec_decode_audio4 function in libavcodec/utils.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.1 allows remote attackers to trigger memory corruption via vectors related to the channel layout.
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The swr_init function in libswresample/swresample.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecified impact via an invalid or unsupported (1) input or (2) output channel layout, related to an out-of-bounds array access.
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
libavcodec/huffyuvdec.c in FFmpeg before 1.1.2 allows remote attackers to have an unspecified impact via crafted Huffyuv data, related to an out-of-bounds write and (1) unchecked return codes from the init_vlc function and (2) "len==0 cases."
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The ff_er_frame_end function in libavcodec/error_resilience.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.1 does not properly verify that a frame is fully initialized, which allows remote attackers to trigger a NULL pointer dereference via crafted picture data.
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The decode_slice_header function in libavcodec/h264.c in FFmpeg before 1.1.2 does not properly check when the pixel format changes, which allows remote attackers to have unspecified impact via crafted H.264 video data, related to an out-of-bounds array access.
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The vqa_decode_chunk function in libavcodec/vqavideo.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.2 allows remote attackers to have an unspecified impact via a large (1) cbp0 or (2) cbpz chunk in Westwood Studios VQA Video file, which triggers an out-of-bounds write.
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The field_end function in libavcodec/h264.c in FFmpeg before 1.1.2 allows remote attackers to have an unspecified impact via crafted H.264 data, related to an SPS and slice mismatch and an out-of-bounds array access.
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The aac_decode_init function in libavcodec/aacdec.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.2 allows remote attackers to have an unspecified impact via a large number of channels in an AAC file, which triggers an out-of-bounds array access.
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Buffer overflow in the rle_decode function in libavcodec/sanm.c in FFmpeg before 1.0.4 and 1.1.x before 1.1.2 allows remote attackers to have an unspecified impact via crafted LucasArts Smush video data.
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The read_header function in libavcodec/shorten.c in FFmpeg before 1.1.3 allows remote attackers to have an unspecified impact via an invalid channel count, related to "freeing invalid addresses."
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Multiple integer overflows in the process_frame_obj function in libavcodec/sanm.c in FFmpeg before 1.1.2 allow remote attackers to have an unspecified impact via crafted image dimensions in LucasArts Smush video data, which triggers an out-of-bounds array access.
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The Enterprise Meeting Server in IBM Lotus Sametime 8.5.2 and 8.5.2.1 allows remote authenticated users to spoof the origin of shared links by leveraging meeting-attendance privileges.
Published Nov 9, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The Gentoo init script for webfs uses world-readable permissions for /var/log/webfsd.log, which allows local users to have unspecified impact by reading the file.
Published Nov 16, 2014 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The ipapwd_chpwop function in daemons/ipa-slapi-plugins/ipa-pwd-extop/ipa_pwd_extop.c in the directory server (dirsrv) in FreeIPA before 3.2.0 allows remote attackers to cause a denial of service (crash) via a connection request without a username/dn, related to the 389 directory server.
Published Nov 3, 2014 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The SUSE coreutils-i18n.patch for GNU coreutils allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a long string to the join command, when using the -i switch, which triggers a stack-based buffer overflow in the alloca function.
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Pacemaker 1.1.10, when remote Cluster Information Base (CIB) configuration or resource management is enabled, does not limit the duration of connections to the blocking sockets, which allows remote attackers to cause a denial of service (connection blocking).
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The SUSE coreutils-i18n.patch for GNU coreutils allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a long string to the sort command, when using the (1) -d or (2) -M switch, which triggers a stack-based buffer overflow in the alloca function.
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Cross-site Scripting (XSS) in Piwik before 1.10.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: This is a different vulnerability than CVE-2013-0193 and CVE-2013-0194.
Published Nov 20, 2019 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Cross-site Scripting (XSS) in Piwik before 1.10.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: This is a different vulnerability than CVE-2013-0194 and CVE-2013-0195.
Published Nov 20, 2019 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Cross-site Scripting (XSS) in Piwik before 1.10.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: This is a different vulnerability than CVE-2013-0193 and CVE-2013-0195.
Published Nov 20, 2019 · Updated Aug 6, 2024
Unknown · CVSS Not scored
The SUSE coreutils-i18n.patch for GNU coreutils allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a long string to the uniq command, which triggers a stack-based buffer overflow in the alloca function.
Published Nov 23, 2013 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Insecure temporary file vulnerability in Redis before 2.6 related to /tmp/redis-%p.vm.
Published Nov 1, 2019 · Updated Aug 6, 2024
Unknown · CVSS Not scored
Insecure temporary file vulnerability in Redis 2.6 related to /tmp/redis.ds.
Published Nov 1, 2019 · Updated Aug 6, 2024