Skip to main content

Vendor archive

novell CVEs

Beta · best-effort

665 CVEs tagged to vendor novell156 Critical, 165 High, 313 Medium, 31 Low, 0 Unrated.

CVE-2015-6815

Published Jan 31, 2020

The process_tx_desc function in hw/net/e1000.c in QEMU before 2.4.0.1 does not properly process transmit descriptor data when sending a network packet, which allows attackers to c…

CVSS 3.5 · Low

CVE-2019-13730

Published Dec 10, 2019

Type confusion in JavaScript in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9

CVE-2017-9277

Published Mar 2, 2018

The LDAP backend in Novell eDirectory before 9.0 SP4 when switched to EBA (Enhanced Background Authentication) kept open connections without EBA.

CVSS 4.2 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-9267

Published Mar 2, 2018

In Novell eDirectory before 9.0.3.1 the LDAP interface was not strictly enforcing cipher restrictions allowing weaker ciphers to be used during SSL BIND operations.

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort

CVE-2017-14496

Published Oct 3, 2017

Integer underflow in the add_pseudoheader function in dnsmasq before 2.78 , when the --add-mac, --add-cpe-id or --add-subnet option is specified, allows remote attackers to cause…

CVSS 7.5 · High
evidence mentions
6
Buzz score
27.5

CVE-2017-13704

Published Oct 3, 2017

In dnsmasq before 2.78, if the DNS packet size does not match the expected size, the size parameter in a memset call gets a negative value. As it is an unsigned value, memset ends…

CVSS 7.5 · High
evidence mentions
5
Buzz score
25.9

CVE-2015-0786

Published Aug 9, 2017

Stack-based buffer overflow in the logging functionality in the Preboot Policy service in Novell ZENworks Configuration Management (ZCM) allows remote attackers to execute arbitra…

CVSS 9.8 · Critical
Vendor/product tagsBeta · best-effort

CVE-2015-0785

Published Aug 9, 2017

com.novell.zenworks.inventory.rtr.actionclasses.wcreports in Novell ZENworks Configuration Management (ZCM) allows remote attackers to read arbitrary folders via the dirname varia…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-25 of 665 CVEsPage 1 of 27