Skip to main content

Vendor archive

opensuse CVEs

Beta · best-effort

3,282 CVEs tagged to vendor opensuse427 Critical, 1,220 High, 1,398 Medium, 237 Low, 0 Unrated.

CVE-2013-4487

Published Nov 20, 2013

Off-by-one error in the dane_raw_tlsa in the DANE library (libdane) in GnuTLS 3.1.x before 3.1.16 and 3.2.x before 3.2.6 allows remote servers to cause a denial of service (memory…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-6629

Published Nov 19, 2013

The get_sos function in jdmarker.c in (1) libjpeg 6b and (2) libjpeg-turbo through 1.3.0, as used in Google Chrome before 31.0.1650.48, Ghostscript, and other products, does not c…

CVSS 5.0 · Medium

CVE-2013-2065

Published Nov 2, 2013

(1) DL and (2) Fiddle in Ruby 1.9 before 1.9.3 patchlevel 426, and 2.0 before 2.0.0 patchlevel 195, do not perform taint checking for native functions, which allows context-depend…

CVSS 6.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-4885

Published Oct 26, 2013

The http-domino-enum-passwords.nse script in NMap before 6.40, when domino-enum-passwords.idpath is set, allows remote servers to upload "arbitrarily named" files via a crafted Fu…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-2190

Published Oct 17, 2013

The translate_hierarchy_event function in x11/clutter-device-manager-xi2.c in Clutter, when resuming the system, does not properly handle XIQueryDevice errors when a device has "d…

CVSS 2.1 · Low
Vendor/product tagsBeta · best-effort

CVE-2013-4123

Published Sep 16, 2013

client_side_request.cc in Squid 3.2.x before 3.2.13 and 3.3.x before 3.3.8 allows remote attackers to cause a denial of service via a crafted port number in a HTTP Host header.

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-5588

Published Aug 29, 2013

Multiple cross-site scripting (XSS) vulnerabilities in Cacti 0.8.8b and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the step parameter to install…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-5018

Published Aug 28, 2013

The is_asn1 function in strongSwan 4.1.11 through 5.0.4 does not properly validate the return value of the asn1_length function, which allows remote attackers to cause a denial of…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2013-3495

Published Aug 28, 2013

The Intel VT-d Interrupt Remapping engine in Xen 3.3.x through 4.3.x allows local guests to cause a denial of service (kernel panic) via a malformed Message Signaled Interrupt (MS…

CVSS 4.7 · Medium
Vendor/product tagsBeta · best-effort
Showing 2,776-2,800 of 3,282 CVEsPage 112 of 132