CVEs (474)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Mariadb OracleSuse6Linux Enterprise Desktop Linux Enterprise ServerLinux Enterprise Software Development Kit+3 moreMay 6, 2026 Oct 15, 2014 N/A· v4 N/A· v3 4.0 MEDIUM· v2 Unspecified vulnerability in Oracle MySQL Server 5.5.38 and earlier and 5.6.19 and earlier allows remote authenticated users to affect availability via vectors related to SERVER:CHARACTER SETS. |
17Apple AristaCanonical+14 more74Arx Firmware BashBig Ip Access Policy Manager+71 moreApr 22, 2026 Sep 25, 2014 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function definitions in the values of environment variables, which allows remote attackers to write to files or possibly have unknown oth...Show more |
17Apple AristaCanonical+14 more74Arx Firmware BashBig Ip Access Policy Manager+71 moreApr 22, 2026 Sep 24, 2014 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code via a crafted environment, as demonstrated by vec...Show more |
4Canonical LinuxOpensuse+1 more6Evergreen Linux Enterprise Real Time ExtensionLinux Enterprise Server+3 moreMay 6, 2026 Sep 1, 2014 N/A· v4 N/A· v3 4.3 MEDIUM· v2 The kvm_iommu_map_pages function in virt/kvm/iommu.c in the Linux kernel through 3.16.1 miscalculates the number of pages during the handling of a mapping failure, which allows guest OS users to (1) cause a denial of ser...Show more |
4Canonical LinuxRedhat+1 more8Enterprise Linux Eus Enterprise Linux Server AusEnterprise Linux Server Tus+5 moreMay 6, 2026 Aug 1, 2014 N/A· v4 N/A· v3 7.1 HIGH· v2 The sctp_assoc_update function in net/sctp/associola.c in the Linux kernel through 3.15.8, when SCTP authentication is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and OOPS) by...Show more |
5Debian LinuxOpensuse+2 more6Debian Linux Enterprise Linux Server AusLinux Enterprise Desktop+3 moreMay 6, 2026 Jul 19, 2014 N/A· v4 N/A· v3 6.9 MEDIUM· v2 The PPPoL2TP feature in net/l2tp/l2tp_ppp.c in the Linux kernel through 3.15.6 allows local users to gain privileges by leveraging data-structure differences between an l2tp socket and an inet socket. |
4Debian MariadbOracle+1 more8Debian Linux Linux Enterprise DesktopLinux Enterprise Server+5 moreMay 6, 2026 Jul 17, 2014 N/A· v4 N/A· v3 5.5 MEDIUM· v2 Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier, and 5.6.17 and earlier, allows remote authenticated users to affect integrity and availability via vectors related to SRCHAR. |
6Debian MariadbOpensuse Project+3 more12Debian Linux Linux Enterprise DesktopLinux Enterprise Server+9 moreMay 6, 2026 Jul 17, 2014 N/A· v4 N/A· v3 6.5 MEDIUM· v2 Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier and 5.6.17 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via vectors relat...Show more |
3Mariadb OracleSuse6Linux Enterprise Desktop Linux Enterprise ServerLinux Enterprise Software Development Kit+3 moreMay 6, 2026 Jul 17, 2014 N/A· v4 N/A· v3 2.8 LOW· v2 Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.35 and earlier and 5.6.15 and earlier allows remote authenticated users to affect availability via vectors related to ENFED. |
2Oracle Suse3Linux Enterprise Desktop Linux Enterprise ServerMysqlMay 6, 2026 Jul 17, 2014 N/A· v4 N/A· v3 3.3 LOW· v2 Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.6.17 and earlier allows remote authenticated users to affect availability via vectors related to SRSP. |
4Debian MariadbOracle+1 more7Debian Linux Linux Enterprise DesktopLinux Enterprise Server+4 moreMay 6, 2026 Jul 17, 2014 N/A· v4 N/A· v3 4.0 MEDIUM· v2 Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier allows remote authenticated users to affect availability via vectors related to SROPTZR. |
4Debian MariadbOracle+1 more7Debian Linux Linux Enterprise DesktopLinux Enterprise Server+4 moreMay 6, 2026 Jul 17, 2014 N/A· v4 N/A· v3 4.0 MEDIUM· v2 Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.37 and earlier allows remote authenticated users to affect availability via vectors related to ENARC. |
2Oracle Suse3Linux Enterprise Desktop Linux Enterprise ServerMysqlMay 6, 2026 Jul 17, 2014 N/A· v4 N/A· v3 6.5 MEDIUM· v2 Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.6.17 and earlier allows remote authenticated users to affect confidentiality, integrity, and availability via vectors related to SRFTS. |
4Canonical DebianLinux+1 more6Debian Linux Linux Enterprise DesktopLinux Enterprise Real Time Extension+3 moreMay 6, 2026 Jul 3, 2014 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The sctp_association_free function in net/sctp/associola.c in the Linux kernel before 3.15.2 does not properly manage a certain backlog value, which allows remote attackers to cause a denial of service (socket outage) vi...Show more |
4Canonical LinuxRedhat+1 more9Enterprise Linux Desktop Enterprise Linux EusEnterprise Linux Server+6 moreMay 6, 2026 Jul 3, 2014 N/A· v4 N/A· v3 4.6 MEDIUM· v2 Multiple integer overflows in sound/core/control.c in the ALSA control implementation in the Linux kernel before 3.15.2 allow local users to cause a denial of service by leveraging /dev/snd/controlCX access, related to (...Show more |
3Canonical LinuxSuse3Linux Enterprise Server Linux KernelUbuntu LinuxMay 6, 2026 Jul 3, 2014 N/A· v4 N/A· v3 4.9 MEDIUM· v2 The snd_ctl_elem_add function in sound/core/control.c in the ALSA control implementation in the Linux kernel before 3.15.2 does not properly maintain the user_ctl_count value, which allows local users to cause a denial o...Show more |
3Canonical LinuxSuse3Linux Enterprise Server Linux KernelUbuntu LinuxMay 6, 2026 Jul 3, 2014 N/A· v4 N/A· v3 4.6 MEDIUM· v2 The snd_ctl_elem_add function in sound/core/control.c in the ALSA control implementation in the Linux kernel before 3.15.2 does not check authorization for SNDRV_CTL_IOCTL_ELEM_REPLACE commands, which allows local users...Show more |
3Canonical LinuxSuse3Linux Enterprise Server Linux KernelUbuntu LinuxMay 6, 2026 Jul 3, 2014 N/A· v4 N/A· v3 4.6 MEDIUM· v2 sound/core/control.c in the ALSA control implementation in the Linux kernel before 3.15.2 does not ensure possession of a read/write lock, which allows local users to cause a denial of service (use-after-free) and obtain...Show more |
4Canonical LinuxRedhat+1 more6Enterprise Linux Desktop Enterprise Linux ServerEnterprise Linux Workstation+3 moreMay 6, 2026 Jul 3, 2014 N/A· v4 N/A· v3 1.9 LOW· v2 Race condition in the tlv handler functionality in the snd_ctl_elem_user_tlv function in sound/core/control.c in the ALSA control implementation in the Linux kernel before 3.15.2 allows local users to obtain sensitive in...Show more |
4Canonical LinuxOpensuse+1 more5Linux Enterprise Real Time Extension Linux Enterprise ServerLinux Kernel+2 moreMay 6, 2026 Jul 3, 2014 N/A· v4 7.3 HIGH· v3 7.5 HIGH· v2 Multiple integer overflows in the lzo1x_decompress_safe function in lib/lzo/lzo1x_decompress_safe.c in the LZO decompressor in the Linux kernel before 3.15.2 allow context-dependent attackers to cause a denial of service...Show more |