CVEs (4,120)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
4Canonical DebianFedoraproject+1 more4Debian Linux FedoraUbuntu Linux+1 moreMay 6, 2026 Feb 6, 2015 N/A· v4 N/A· v3 5.0 MEDIUM· v2 unzip 6.0 allows remote attackers to cause a denial of service (out-of-bounds read or write and crash) via an extra field with an uncompressed size smaller than the compressed field size in a zip archive that advertises...Show more |
4Canonical GoogleOpensuse+1 more8Chrome Enterprise Linux DesktopEnterprise Linux Eus+5 moreMay 6, 2026 Feb 6, 2015 N/A· v4 N/A· v3 7.5 HIGH· v2 Multiple unspecified vulnerabilities in Google Chrome before 40.0.2214.111 on Windows, OS X, and Linux and before 40.0.2214.109 on Android allow attackers to cause a denial of service or possibly have other impact via un...Show more |
4Canonical GoogleOpensuse+1 more8Chrome Enterprise Linux DesktopEnterprise Linux Eus+5 moreMay 6, 2026 Feb 6, 2015 N/A· v4 N/A· v3 7.5 HIGH· v2 The OriginCanAccessServiceWorkers function in content/browser/service_worker/service_worker_dispatcher_host.cc in Google Chrome before 40.0.2214.111 on Windows, OS X, and Linux and before 40.0.2214.109 on Android does no...Show more |
4Canonical GoogleOpensuse+1 more8Chrome Enterprise Linux DesktopEnterprise Linux Eus+5 moreMay 6, 2026 Feb 6, 2015 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The V8ThrowException::createDOMException function in bindings/core/v8/V8ThrowException.cpp in the V8 bindings in Blink, as used in Google Chrome before 40.0.2214.111 on Windows, OS X, and Linux and before 40.0.2214.109 o...Show more |
4Canonical GoogleOpensuse+1 more8Chrome Enterprise Linux DesktopEnterprise Linux Eus+5 moreMay 6, 2026 Feb 6, 2015 N/A· v4 N/A· v3 7.5 HIGH· v2 Use-after-free vulnerability in the VisibleSelection::nonBoundaryShadowTreeRootNode function in core/editing/VisibleSelection.cpp in the DOM implementation in Blink, as used in Google Chrome before 40.0.2214.111 on Windo...Show more |
3Canonical MageiaRedhat7Enterprise Linux Desktop Enterprise Linux Hpc NodeEnterprise Linux Server+4 moreMay 6, 2026 Jan 29, 2015 N/A· v4 N/A· v3 3.5 LOW· v2 libvirt before 1.2.12 allow remote authenticated users to obtain the VNC password by using the VIR_DOMAIN_XML_SECURE flag with a crafted (1) snapshot to the virDomainSnapshotGetXMLDesc interface or (2) image to the virDo...Show more |
3Canonical ChromiumGoogle4Chrome ChromiumUbuntu Linux+1 moreMay 6, 2026 Jan 22, 2015 N/A· v4 N/A· v3 7.5 HIGH· v2 Multiple unspecified vulnerabilities in Google V8 before 3.30.33.15, as used in Google Chrome before 40.0.2214.91, allow attackers to cause a denial of service or possibly have other impact via unknown vectors. |
3Canonical ChromiumGoogle3Chrome ChromiumUbuntu LinuxMay 6, 2026 Jan 22, 2015 N/A· v4 N/A· v3 7.5 HIGH· v2 Multiple unspecified vulnerabilities in Google Chrome before 40.0.2214.91 allow attackers to cause a denial of service or possibly have other impact via unknown vectors. |
5Canonical ChromiumGoogle+2 more8Chrome ChromiumEnterprise Linux Desktop Supplementary+5 moreMay 6, 2026 Jan 22, 2015 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Skia, as used in Google Chrome before 40.0.2214.91, allows remote attackers to cause a denial of service (out-of-bounds read) via unspecified vectors. |
5Canonical ChromiumGoogle+2 more8Chrome ChromiumEnterprise Linux Desktop Supplementary+5 moreMay 6, 2026 Jan 22, 2015 N/A· v4 N/A· v3 7.5 HIGH· v2 The Fonts implementation in Google Chrome before 40.0.2214.91 does not initialize memory for a data structure, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unkn...Show more |
6Canonical GoogleIcu Project+3 more9Chrome Communications Messaging ServerEnterprise Linux Desktop Supplementary+6 moreMay 6, 2026 Jan 22, 2015 N/A· v4 N/A· v3 7.5 HIGH· v2 The Regular Expressions package in International Components for Unicode (ICU) 52 before SVN revision 292944, as used in Google Chrome before 40.0.2214.91, allows remote attackers to cause a denial of service (memory corr...Show more |
6Canonical GoogleIcu Project+3 more9Chrome Communications Messaging ServerEnterprise Linux Desktop Supplementary+6 moreMay 6, 2026 Jan 22, 2015 N/A· v4 N/A· v3 7.5 HIGH· v2 The Regular Expressions package in International Components for Unicode (ICU) 52 before SVN revision 292944, as used in Google Chrome before 40.0.2214.91, allows remote attackers to cause a denial of service (memory corr...Show more |
7Canonical DebianFedoraproject+4 more14Debian Linux Enterprise Linux DesktopEnterprise Linux Hpc Node+11 moreMay 6, 2026 Jan 21, 2015 N/A· v4 N/A· v3 4.0 MEDIUM· v2 Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier allows remote authenticated users to affect availability via vectors related to Server : InnoDB : DDL : Foreign Key. |
3Canonical OracleSuse4Jdk JreSuse Linux Enterprise Server+1 moreMay 6, 2026 Jan 21, 2015 N/A· v4 N/A· v3 1.9 LOW· v2 Unspecified vulnerability in Oracle Java SE 7u72 and 8u25 allows local users to affect integrity via unknown vectors related to Serviceability. |
6Canonical DebianNovell+3 more8Debian Linux Enterprise LinuxJdk+5 moreMay 6, 2026 Jan 21, 2015 N/A· v4 N/A· v3 7.2 HIGH· v2 Unspecified vulnerability in Oracle Java SE 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JAX-WS. |
6Canonical DebianFedoraproject+3 more8Communications Policy Management Debian LinuxEnterprise Linux+5 moreMay 6, 2026 Jan 21, 2015 N/A· v4 N/A· v3 7.5 HIGH· v2 Unspecified vulnerability in Oracle MySQL Server 5.5.40 and earlier, and 5.6.21 and earlier, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Server : Security...Show more |
6Canonical DebianNovell+3 more9Debian Linux Enterprise LinuxJdk+6 moreMay 6, 2026 Jan 21, 2015 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Unspecified vulnerability in the Java SE, Java SE Embedded, JRockit component in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25; Java SE Embedded 7u71 and 8u6; and JRockit R27.8.4 and R28.3.4 allows remote attackers to affe...Show more |
6Canonical DebianNovell+3 more8Debian Linux Enterprise LinuxJdk+5 moreMay 6, 2026 Jan 21, 2015 N/A· v4 N/A· v3 10.0 HIGH· v2 Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to RMI. |
5Canonical DebianFedoraproject+2 more6Debian Linux Enterprise LinuxFedora+3 moreMay 6, 2026 Jan 21, 2015 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality via unknown vectors related to Swing. |
4Canonical NovellOpensuse+1 more6Jdk JreOpensuse+3 moreMay 6, 2026 Jan 21, 2015 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Unspecified vulnerability in Oracle Java SE 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality via unknown vectors related to Libraries. |