Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
fedoraproject fedora 20 vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2015-2752
The XEN_DOMCTL_memory_mapping hypercall in Xen 3.2.x up to and including 4.5.x, when using a PCI passthrough device, is not preemptible, which allows local x86 HVM domain users to cause a denial of service (host CPU consumption) via a crafted request to the device model (qemu-dm)...
Fedoraproject Fedora 20
Fedoraproject Fedora 21
Xen Xen 4.3.0
Xen Xen 4.3.1
Xen Xen 4.3.2
Xen Xen 4.4.0
Xen Xen 4.4.1
Xen Xen 4.5.0
NA
CVE-2015-2157
The (1) ssh2_load_userkey and (2) ssh2_save_userkey functions in PuTTY 0.51 up to and including 0.63 do not properly wipe SSH-2 private keys from memory, which allows local users to obtain sensitive information by reading the memory.
Fedoraproject Fedora 20
Fedoraproject Fedora 22
Debian Debian Linux 7.0
Opensuse Opensuse 13.1
Opensuse Opensuse 13.2
Putty Putty 0.54
Putty Putty 0.55
Putty Putty 0.62
Putty Putty 0.63
Putty Putty 0.51
Putty Putty 0.52
Putty Putty 0.58
Putty Putty 0.59
Putty Putty 0.56
Putty Putty 0.57
Simon Tatham Putty 0.53
Putty Putty 0.53b
Putty Putty 0.60
Putty Putty 0.61
NA
CVE-2015-0295
The BMP decoder in QtGui in QT prior to 5.5 does not properly calculate the masks used to extract the color components, which allows remote malicious users to cause a denial of service (divide-by-zero and crash) via a crafted BMP file.
Fedoraproject Fedora 20
Fedoraproject Fedora 21
Fedoraproject Fedora 22
Opensuse Opensuse 13.1
Digia Qt
NA
CVE-2015-2152
Xen 4.5.x and previous versions enables certain default backends when emulating a VGA device for an x86 HVM guest qemu even when the configuration disables them, which allows local guest users to obtain access to the VGA console by (1) setting the DISPLAY environment variable, wh...
Xen Xen
Fedoraproject Fedora 22
Fedoraproject Fedora 21
Fedoraproject Fedora 20
NA
CVE-2015-0778
osc prior to 0.151.0 allows remote malicious users to execute arbitrary commands via shell metacharacters in a _service file.
Fedoraproject Fedora 22
Fedoraproject Fedora 20
Fedoraproject Fedora 21
Suse Opensuse Osc
Opensuse Opensuse 13.1
Opensuse Opensuse 13.2
NA
CVE-2015-2045
The HYPERVISOR_xen_version hypercall in Xen 3.2.x up to and including 4.5.x does not properly initialize data structures, which allows local guest users to obtain sensitive information via unspecified vectors.
Xen Xen 3.2.1
Xen Xen 3.2.2
Xen Xen 3.4.2
Xen Xen 3.4.3
Xen Xen 3.4.4
Xen Xen 4.1.1
Xen Xen 4.1.2
Xen Xen 4.2.2
Xen Xen 4.2.3
Xen Xen 3.2.3
Xen Xen 3.3.0
Xen Xen 4.0.0
Xen Xen 4.0.1
Xen Xen 4.1.3
Xen Xen 4.1.4
Xen Xen 4.3.0
Xen Xen 4.3.1
Xen Xen 3.3.1
Xen Xen 3.3.2
Xen Xen 4.0.2
Xen Xen 4.0.3
Xen Xen 4.1.5
NA
CVE-2015-2206
libraries/select_lang.lib.php in phpMyAdmin 4.0.x prior to 4.0.10.9, 4.2.x prior to 4.2.13.2, and 4.3.x prior to 4.3.11.1 includes invalid language values in unknown-language error responses that contain a CSRF token and may be sent with HTTP compression, which makes it easier fo...
Fedoraproject Fedora 22
Fedoraproject Fedora 20
Fedoraproject Fedora 21
Phpmyadmin Phpmyadmin 4.0.0
Phpmyadmin Phpmyadmin 4.0.5
Phpmyadmin Phpmyadmin 4.0.6
Phpmyadmin Phpmyadmin 4.0.10.3
Phpmyadmin Phpmyadmin 4.0.10.4
Phpmyadmin Phpmyadmin 4.2.3
Phpmyadmin Phpmyadmin 4.2.4
Phpmyadmin Phpmyadmin 4.2.9
Phpmyadmin Phpmyadmin 4.2.9.1
Phpmyadmin Phpmyadmin 4.3.0
Phpmyadmin Phpmyadmin 4.3.1
Phpmyadmin Phpmyadmin 4.3.9
Phpmyadmin Phpmyadmin 4.3.10
Phpmyadmin Phpmyadmin 4.0.4.1
Phpmyadmin Phpmyadmin 4.0.4.2
Phpmyadmin Phpmyadmin 4.0.10.1
Phpmyadmin Phpmyadmin 4.0.10.2
Phpmyadmin Phpmyadmin 4.2.1
Phpmyadmin Phpmyadmin 4.2.2
NA
CVE-2015-0886
Integer overflow in the crypt_raw method in the key-stretching implementation in jBCrypt prior to 0.4 makes it easier for remote malicious users to determine cleartext values of password hashes via a brute-force attack against hashes associated with the maximum exponent.
Mindrot Jbcrypt
Fedoraproject Fedora 22
Fedoraproject Fedora 20
Fedoraproject Fedora 21
NA
CVE-2014-9465
senddocument.php in Zarafa WebApp prior to 2.0 beta 3 and WebAccess in Zarafa Collaboration Platform (ZCP) 7.x prior to 7.1.12 beta 1 and 7.2.x prior to 7.2.0 beta 1 allows remote malicious users to cause a denial of service (/tmp disk consumption) by uploading a large number of ...
Fedoraproject Fedora 21
Fedoraproject Fedora 20
Zarafa Zarafa Collaboration Platform 7.0.3
Zarafa Zarafa Collaboration Platform 7.0.5
Zarafa Zarafa Collaboration Platform 7.0.12
Zarafa Zarafa Collaboration Platform 7.1.0
Zarafa Zarafa Collaboration Platform 7.1.7
Zarafa Zarafa Collaboration Platform 7.1.9
Zarafa Webapp
Zarafa Zarafa Collaboration Platform 7.0.0
Zarafa Zarafa Collaboration Platform 7.0.1
Zarafa Zarafa Collaboration Platform 7.0.2
Zarafa Zarafa Collaboration Platform 7.1.2
Zarafa Zarafa Collaboration Platform 7.1.3
Zarafa Zarafa Collaboration Platform 7.1.4
Zarafa Zarafa Collaboration Platform 7.1.5
Zarafa Zarafa Collaboration Platform 7.0.7
Zarafa Zarafa Collaboration Platform 7.0.8
Zarafa Zarafa Collaboration Platform 7.0.9
Zarafa Zarafa Collaboration Platform 7.0.10
Zarafa Zarafa Collaboration Platform 7.0.11
Zarafa Zarafa Collaboration Platform 7.1.10
NA
CVE-2015-0247
Heap-based buffer overflow in openfs.c in the libext2fs library in e2fsprogs prior to 1.42.12 allows local users to execute arbitrary code via crafted block group descriptor data in a filesystem image.
E2fsprogs Project E2fsprogs
Debian Debian Linux 7.0
Canonical Ubuntu Linux 14.04
Canonical Ubuntu Linux 12.04
Canonical Ubuntu Linux 14.10
Canonical Ubuntu Linux 10.04
Fedoraproject Fedora 20
Fedoraproject Fedora 21
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-48654
CVE-2024-2757
authentication bypass
CVE-2024-3194
CVE-2024-33640
CVE-2024-21111
dos
insecure direct object reference
CVE-2024-21345
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
5
6
7
8
9
10
NEXT »