Skip to main content

Vendor archive

opensuse CVEs

Beta · best-effort

3,282 CVEs tagged to vendor opensuse427 Critical, 1,220 High, 1,398 Medium, 237 Low, 0 Unrated.

CVE-2014-3690

Published Nov 10, 2014

arch/x86/kvm/vmx.c in the KVM subsystem in the Linux kernel before 3.17.2 on Intel processors does not ensure that the value in the CR4 control register remains the same after a V…

CVSS 5.5 · Medium

CVE-2014-3673

Published Nov 10, 2014

The SCTP implementation in the Linux kernel through 3.17.2 allows remote attackers to cause a denial of service (system crash) via a malformed ASCONF chunk, related to net/sctp/sm…

CVSS 7.5 · High

CVE-2014-6300

Published Nov 8, 2014

Cross-site scripting (XSS) vulnerability in the micro history implementation in phpMyAdmin 4.0.x before 4.0.10.3, 4.1.x before 4.1.14.4, and 4.2.x before 4.2.8.1 allows remote att…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-8326

Published Nov 5, 2014

Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 4.0.x before 4.0.10.5, 4.1.x before 4.1.14.6, and 4.2.x before 4.2.10.1 allow remote authenticated users to injec…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2013-4540

Published Nov 4, 2014

Buffer overflow in scoop_gpio_handler_update in QEMU before 1.7.2 might allow remote attackers to execute arbitrary code via a large (1) prev_level, (2) gpio_level, or (3) gpio_di…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2014-3475

Published Oct 31, 2014

Cross-site scripting (XSS) vulnerability in the Users panel (admin/users/) in OpenStack Dashboard (Horizon) before 2013.2.4, 2014.1 before 2014.1.2, and Juno before Juno-2 allows…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2014-3474

Published Oct 31, 2014

Cross-site scripting (XSS) vulnerability in horizon/static/horizon/js/horizon.instances.js in the Launch Instance menu in OpenStack Dashboard (Horizon) before 2013.2.4, 2014.1 bef…

CVSS 3.5 · Low
Vendor/product tagsBeta · best-effort

CVE-2014-3473

Published Oct 31, 2014

Cross-site scripting (XSS) vulnerability in the Orchestration/Stack section in the Horizon Orchestration dashboard in OpenStack Dashboard (Horizon) before 2013.2.4, 2014.1 before…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-2576

Published Oct 15, 2014

plugins/rssyl/feed.c in Claws Mail before 3.10.0 disables the CURLOPT_SSL_VERIFYHOST check for CN or SAN host name fields, which makes it easier for remote attackers to spoof serv…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-1830

Published Oct 15, 2014

Requests (aka python-requests) before 2.3.0 allows remote servers to obtain sensitive information by reading the Proxy-Authorization header in a redirected request.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2014-0569

Published Oct 15, 2014

Integer overflow in Adobe Flash Player before 13.0.0.250 and 14.x and 15.x before 15.0.0.189 on Windows and OS X and before 11.2.202.411 on Linux, Adobe AIR before 15.0.0.293, Ado…

CVSS 9.3 · Critical
evidence mentions
11
Buzz score
40.9
Showing 2,551-2,575 of 3,282 CVEsPage 103 of 132