CVEs (10,000)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
Google Chrome before 27.0.1453.110 allows remote attackers to bypass the Same Origin Policy and trigger namespace pollution via unspecified vectors. |
Use-after-free vulnerability in the HTML5 Audio implementation in Google Chrome before 27.0.1453.110 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors. |
Use-after-free vulnerability in Google Chrome before 27.0.1453.110 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of images. |
Use-after-free vulnerability in Google Chrome before 27.0.1453.110 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the handling of input. |
The Developer Tools API in Google Chrome before 27.0.1453.110 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors. |
6Canonical DebianFedoraproject+3 more10Debian Linux Enterprise Linux DesktopEnterprise Linux Eus+7 moreApr 29, 2026 May 29, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 schpw.c in the kpasswd service in kadmind in MIT Kerberos 5 (aka krb5) before 1.11.3 does not properly validate UDP packets before sending responses, which allows remote attackers to cause a denial of service (CPU and ba...Show more |
3Debian OpensuseWireshark3Debian Linux OpensuseWiresharkApr 29, 2026 May 25, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 Multiple integer signedness errors in the tvb_unmasked function in epan/dissectors/packet-websocket.c in the Websocket dissector in Wireshark 1.8.x before 1.8.7 allow remote attackers to cause a denial of service (applic...Show more |
3Debian OpensuseWireshark3Debian Linux OpensuseWiresharkApr 29, 2026 May 25, 2013 N/A· v4 N/A· v3 7.8 HIGH· v2 Multiple integer overflows in Wireshark 1.8.x before 1.8.7 allow remote attackers to cause a denial of service (loop or application crash) via a malformed packet, related to a crash of the Websocket dissector, an infinit...Show more |
3Debian OpensuseWireshark3Debian Linux OpensuseWiresharkApr 29, 2026 May 25, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The dissect_dsmcc_un_download function in epan/dissectors/packet-mpeg-dsmcc.c in the MPEG DSM-CC dissector in Wireshark 1.8.x before 1.8.7 uses an incorrect format string, which allows remote attackers to cause a denial...Show more |
3Debian OpensuseWireshark3Debian Linux OpensuseWiresharkApr 29, 2026 May 25, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 epan/dissectors/packet-dcp-etsi.c in the DCP ETSI dissector in Wireshark 1.8.x before 1.8.7 uses incorrect integer data types, which allows remote attackers to cause a denial of service (integer overflow, and heap memory...Show more |
3Debian OpensuseWireshark3Debian Linux OpensuseWiresharkApr 29, 2026 May 25, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The dissect_ccp_bsdcomp_opt function in epan/dissectors/packet-ppp.c in the PPP CCP dissector in Wireshark 1.8.x before 1.8.7 does not terminate a bit-field list, which allows remote attackers to cause a denial of servic...Show more |
3Debian OpensuseWireshark3Debian Linux OpensuseWiresharkApr 29, 2026 May 25, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The dissect_ber_choice function in epan/dissectors/packet-ber.c in the ASN.1 BER dissector in Wireshark 1.6.x before 1.6.15 and 1.8.x before 1.8.7 does not properly initialize a certain variable, which allows remote atta...Show more |
3Debian OpensuseWireshark3Debian Linux OpensuseWiresharkApr 29, 2026 May 25, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The fragment_add_seq_common function in epan/reassemble.c in the ASN.1 BER dissector in Wireshark before r48943 has an incorrect pointer dereference during a comparison, which allows remote attackers to cause a denial of...Show more |
3Debian OpensuseWireshark3Debian Linux OpensuseWiresharkApr 29, 2026 May 25, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 epan/dissectors/packet-gtpv2.c in the GTPv2 dissector in Wireshark 1.8.x before 1.8.7 calls incorrect functions in certain contexts related to ciphers, which allows remote attackers to cause a denial of service (applicat...Show more |
5Canonical DebianMozilla+2 more18Debian Linux Enterprise Linux DesktopEnterprise Linux Eus+15 moreApr 22, 2026 May 16, 2013 N/A· v4 6.5 MEDIUM· v3 4.3 MEDIUM· v2 Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x before 17.0.6 do not properly initialize data structures for the nsDOMSVGZoomEvent::mPreviousScale and nsDO...Show more |
4Debian FedoraprojectOpensuse+1 more4Debian Linux FedoraModsecurity+1 moreApr 29, 2026 Apr 25, 2013 N/A· v4 N/A· v3 7.5 HIGH· v2 ModSecurity before 2.7.3 allows remote attackers to read arbitrary files, send HTTP requests to intranet servers, or cause a denial of service (CPU and memory consumption) via an XML external entity declaration in conjun...Show more |
5Canonical DebianMozilla+2 more10Debian Linux FirefoxLinux Enterprise Desktop+7 moreApr 29, 2026 Apr 3, 2013 N/A· v4 N/A· v3 6.8 MEDIUM· v2 Integer signedness error in the pixman_fill_sse2 function in pixman-sse2.c in Pixman, as distributed with Cairo and used in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderb...Show more |
7Canonical DebianMariadb+4 more9Debian Linux Enterprise LinuxLinux Enterprise Desktop+6 moreApr 29, 2026 Mar 28, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 MariaDB 5.5.x before 5.5.30, 5.3.x before 5.3.13, 5.2.x before 5.2.15, and 5.1.x before 5.1.68, and Oracle MySQL 5.1.69 and earlier, 5.5.31 and earlier, and 5.6.11 and earlier allows remote attackers to cause a denial of...Show more |
3Debian OpensuseWireshark3Debian Linux OpensuseWiresharkApr 29, 2026 Mar 7, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The DTLS dissector in Wireshark 1.6.x before 1.6.14 and 1.8.x before 1.8.6 does not validate the fragment offset before invoking the reassembly state machine, which allows remote attackers to cause a denial of service (a...Show more |
3Debian OpensuseWireshark3Debian Linux OpensuseWiresharkApr 29, 2026 Mar 7, 2013 N/A· v4 N/A· v3 7.8 HIGH· v2 epan/dissectors/packet-reload.c in the REsource LOcation And Discovery (aka RELOAD) dissector in Wireshark 1.8.x before 1.8.6 uses incorrect integer data types, which allows remote attackers to cause a denial of service...Show more |