Skip to main content

Vendor archive

opensuse CVEs

Beta · best-effort

3,282 CVEs tagged to vendor opensuse427 Critical, 1,220 High, 1,398 Medium, 237 Low, 0 Unrated.

CVE-2013-5619

Published Dec 11, 2013

Multiple integer overflows in the binary-search implementation in SpiderMonkey in Mozilla Firefox before 26.0 and SeaMonkey before 2.23 might allow remote attackers to cause a den…

CVSS 7.5 · High

CVE-2013-5615

Published Dec 11, 2013

The JavaScript implementation in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 does not properly enforce certain ty…

CVSS 9.8 · Critical

CVE-2013-5611

Published Dec 11, 2013

Mozilla Firefox before 26.0 does not properly remove the Application Installation doorhanger, which makes it easier for remote attackers to spoof a Web App installation site by co…

CVSS 5.8 · Medium

CVE-2013-5610

Published Dec 11, 2013

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 26.0 and SeaMonkey before 2.23 allow remote attackers to cause a denial of service (memory cor…

CVSS 10.0 · Critical

CVE-2013-1090

Published Dec 6, 2013

The SUSE horde5 package before 5.0.2-2.4.1 sets incorrect ownership for certain configuration files and directories including /etc/apache2/vhosts.d, which allows local wwwrun user…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2012-0427

Published Dec 2, 2013

yast2-add-on-creator in SUSE inst-source-utils 2008.11.26 before 2008.11.26-0.9.1 and 2012.9.13 before 2012.9.13-0.8.1 allows local users to gain privileges via a crafted (1) file…

CVSS 7.2 · High
Vendor/product tagsBeta · best-effort

CVE-2012-0425

Published Dec 2, 2013

LanItems.ycp in save_y2logs in yast2-network before 2.24.4 in SUSE YaST writes cleartext Wi-Fi credentials to the y2log log file, which allows context-dependent attackers to obtai…

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2012-0420

Published Dec 2, 2013

zypp-refresh-wrapper in SUSE Zypper before 1.3.20 and 1.6.x before 1.6.166 allows local users to create files in arbitrary directories, or possibly have unspecified other impact,…

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-4509

Published Nov 23, 2013

The default configuration of IBUS 1.5.4, and possibly 1.5.2 and earlier, when IBus.InputPurpose.PASSWORD is not set and used with GNOME 3, does not obscure the entered password ch…

CVSS 1.9 · Low
Vendor/product tagsBeta · best-effort

CVE-2013-0223

Published Nov 23, 2013

The SUSE coreutils-i18n.patch for GNU coreutils allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a long string to the join comman…

CVSS 1.9 · Low
Vendor/product tagsBeta · best-effort

CVE-2013-0222

Published Nov 23, 2013

The SUSE coreutils-i18n.patch for GNU coreutils allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a long string to the uniq comman…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2013-0221

Published Nov 23, 2013

The SUSE coreutils-i18n.patch for GNU coreutils allows context-dependent attackers to cause a denial of service (segmentation fault and crash) via a long string to the sort comman…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-6375

Published Nov 23, 2013

Xen 4.2.x and 4.3.x, when using Intel VT-d for PCI passthrough, does not properly flush the TLB after clearing a present translation table entry, which allows local guest administ…

CVSS 7.9 · High
Vendor/product tagsBeta · best-effort
Showing 2,751-2,775 of 3,282 CVEsPage 111 of 132