Filtered by vendor Kanaka Subscriptions
Total 5 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2013-7436 2 Kanaka, Redhat 2 Novnc, Openstack 2024-11-21 N/A
noVNC before 0.5 does not set the secure flag for a cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session.
CVE-2024-35420 1 Kanaka 1 Wac 2024-11-18 6.2 Medium
wac commit 385e1 was discovered to contain a heap overflow.
CVE-2024-35418 1 Kanaka 1 Wac 2024-11-18 6.2 Medium
wac commit 385e1 was discovered to contain a heap overflow via the setup_call function at /wac-asan/wa.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted wasm file.
CVE-2024-35410 1 Kanaka 1 Wac 2024-11-18 6.2 Medium
wac commit 385e1 was discovered to contain a heap overflow via the interpret function at /wac-asan/wa.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted wasm file.
CVE-2024-35419 1 Kanaka 1 Wac 2024-11-18 5.5 Medium
wac commit 385e1 was discovered to contain a heap overflow via the load_module function at /wac-asan/wa.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted wasm file.