Search Results (18384 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2014-1947 2 Imagemagick, Suse 4 Imagemagick, Linux Enterprise Desktop, Linux Enterprise Server and 1 more 2024-11-21 7.8 High
Stack-based buffer overflow in the WritePSDImage function in coders/psd.c in ImageMagick 6.5.4 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large number of layers in a PSD image, involving the L%02ld string, a different vulnerability than CVE-2014-2030.
CVE-2014-1598 1 Centurystar Project 1 Centurystar 2024-11-21 9.8 Critical
centurystar 7.12 ActiveX Control has a Stack Buffer Overflow
CVE-2014-0593 1 Opensuse 1 Open Build Service 2024-11-21 N/A
The set_version script as shipped with obs-service-set_version is a source validator for the Open Build Service (OBS). In versions prior to 0.5.3-1.1 this script did not properly sanitize the input provided by the user, allowing for code execution on the executing server.
CVE-2014-0163 1 Redhat 1 Openshift 2024-11-21 8.8 High
Openshift has shell command injection flaws due to unsanitized data being passed into shell commands.
CVE-2014-0156 1 Manageiq 1 Awesomespawn 2024-11-21 9.8 Critical
Awesome spawn contains OS command injection vulnerability, which allows execution of additional commands passed to Awesome spawn as arguments. If untrusted input was included in command arguments, attacker could use this flaw to execute arbitrary command.
CVE-2014-0011 1 Tigervnc 1 Tigervnc 2024-11-21 9.8 Critical
Multiple heap-based buffer overflows in the ZRLE_DECODE function in common/rfb/zrleDecode.h in TigerVNC before 1.3.1, when NDEBUG is enabled, allow remote VNC servers to cause a denial of service (vncviewer crash) and possibly execute arbitrary code via vectors related to screen image rendering.
CVE-2013-7491 1 Perl 1 Dbi 2024-11-21 5.3 Medium
An issue was discovered in the DBI module before 1.628 for Perl. Stack corruption occurs when a user-defined function requires a non-trivial amount of memory and the Perl stack gets reallocated.
CVE-2013-7098 1 Infradead 1 Openconnect 2024-11-21 9.8 Critical
OpenConnect VPN client with GnuTLS before 5.02 contains a heap overflow if MTU is increased on reconnection.
CVE-2013-5659 1 Info-zip 1 Wiz 2024-11-21 7.5 High
Wiz 5.0.3 has a user mode write access violation
CVE-2013-5656 1 Fuzezip Project 1 Fuzezip 2024-11-21 7.8 High
FuzeZip 1.0.0.131625 has a Local Buffer Overflow vulnerability
CVE-2013-4267 1 Pydio 1 Pydio 2024-11-21 9.8 Critical
Ajaxeplorer before 5.0.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) archive_name parameter to the Power FS module (plugins/action.powerfs/class.PowerFSController.php), a (2) file name to the getTrustSizeOnFileSystem function in the File System (Standard) module (plugins/access.fs/class.fsAccessWrapper.php), or the (3) revision parameter to the Subversion Repository module (plugins/meta.svn/class.SvnManager.php).
CVE-2013-3946 1 Extensis 1 Mrsid 2024-11-21 7.8 High
Heap-based buffer overflow in the MrSID plugin (MrSID.dll) before 4.37 for IrfanView allows remote attackers to execute arbitrary code via a levels header.
CVE-2013-3944 1 Extensis 1 Mrsid 2024-11-21 7.8 High
Stack-based buffer overflow in the MrSID plugin (MrSID.dll) before 4.37 for IrfanView allows remote attackers to execute arbitrary code via an IMAGE tag.
CVE-2013-3941 1 Xnview 1 Xnview 2024-11-21 9.8 Critical
Xjp2.dll in XnView before 2.13 allows remote attackers to execute arbitrary code via (1) the Csiz parameter in a SIZ marker, which triggers an incorrect memory allocation, or (2) the lqcd field in a QCD marker in a crafted JPEG2000 file, which leads to a heap-based buffer overflow.
CVE-2013-3939 1 Xnview 1 Xnview 2024-11-21 7.8 High
xnview.exe in XnView before 2.13 does not properly handle RLE strip lengths during processing of RGB files, which allows remote attackers to execute arbitrary code via the RLE strip size field in a RGB file, which leads to an unexpected sign extension error and a heap-based buffer overflow.
CVE-2013-3937 1 Xnview 1 Xnview 2024-11-21 7.8 High
Heap-based buffer overflow in xnview.exe in XnView before 2.13 allows remote attackers to execute arbitrary code via the biBitCount field in a BMP file.
CVE-2013-3492 1 Xnview 1 Xnview 2024-11-21 9.8 Critical
XnView 2.03 has a stack-based buffer overflow vulnerability
CVE-2013-3322 1 Netapp 1 Oncommand System Manager 2024-11-21 7.2 High
NetApp OnCommand System Manager 2.1 and earlier allows remote attackers to inject arbitrary commands in the Halt/Reboot interface.
CVE-2013-3247 1 Xnview 1 Xnview 2024-11-21 7.8 High
Heap-based buffer overflow in xnview.exe in XnView before 2.03 allows remote attackers to execute arbitrary code via a crafted RLE compressed layer in an XCF file.
CVE-2013-3246 1 Xnview 1 Xnview 2024-11-21 7.8 High
Stack-based buffer overflow in xnview.exe in XnView before 2.03 allows remote attackers to execute arbitrary code via a crafted image layer in an XCF file.