Opensuse
opensuse
3,271 CVEs • 50 products
Products (50)
Click to collapseToggle
Products (50)
Click to collapse
CVEs (3,271)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
3Canonical OpensuseRedhat3Icedtea Web OpensuseUbuntu LinuxApr 29, 2026 Apr 29, 2013 N/A· v4 N/A· v3 6.8 MEDIUM· v2 The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 allows remote attackers to execute arbitrary code via a crafted file that validates as both a GIF and a Java JAR file, aka "GIFAR." |
3Canonical OpensuseRedhat3Icedtea Web OpensuseUbuntu LinuxApr 29, 2026 Apr 29, 2013 N/A· v4 N/A· v3 5.8 MEDIUM· v2 The IcedTea-Web plugin before 1.2.3 and 1.3.x before 1.3.2 uses the same class loader for applets with the same codebase path but from different domains, which allows remote attackers to obtain sensitive information or p...Show more |
4Debian FedoraprojectOpensuse+1 more4Debian Linux FedoraModsecurity+1 moreApr 29, 2026 Apr 25, 2013 N/A· v4 N/A· v3 7.5 HIGH· v2 ModSecurity before 2.7.3 allows remote attackers to read arbitrary files, send HTTP requests to intranet servers, or cause a denial of service (CPU and memory consumption) via an XML external entity declaration in conjun...Show more |
3Canonical OpensuseXmlsoft3Libxml2 OpensuseUbuntu LinuxApr 29, 2026 Apr 25, 2013 N/A· v4 N/A· v3 4.3 MEDIUM· v2 libxml2 2.9.0 and earlier allows context-dependent attackers to cause a denial of service (CPU and memory consumption) via an XML file containing an entity declaration with long replacement text and many references to th...Show more |
2Opensuse Plataformatec2Devise OpensuseApr 29, 2026 Apr 25, 2013 N/A· v4 N/A· v3 6.8 MEDIUM· v2 Devise gem 2.2.x before 2.2.3, 2.1.x before 2.1.3, 2.0.x before 2.0.5, and 1.5.x before 1.5.4 for Ruby, when using certain databases, does not properly perform type conversion when performing database queries, which migh...Show more |
4Fedoraproject MitOpensuse+1 more8Enterprise Linux Desktop Enterprise Linux EusEnterprise Linux Server+5 moreApr 29, 2026 Apr 19, 2013 N/A· v4 N/A· v3 4.0 MEDIUM· v2 The prep_reprocess_req function in do_tgs_req.c in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) before 1.10.5 does not properly perform service-principal realm referral, which allows remote authenticate...Show more |
3Canonical OpensuseOracle3Jre OpensuseUbuntu LinuxApr 22, 2026 Apr 17, 2013 N/A· v4 3.7 LOW· v3 4.3 MEDIUM· v2 Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, and OpenJDK 7, allows remote attackers to affect integrity via unknown vectors related to HotSpot. NOT...Show more |
libxslt before 1.1.28 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via an (1) empty match attribute in a XSL key to the xsltAddKey function in keys.c or (2) uninitialized vari...Show more |
3Adobe NovellOpensuse5Adobe Air Adobe Air SdkFlash Player+2 moreApr 29, 2026 Apr 10, 2013 N/A· v4 N/A· v3 10.0 HIGH· v2 Adobe Flash Player before 10.3.183.75 and 11.x before 11.7.700.169 on Windows and Mac OS X, before 10.3.183.75 and 11.x before 11.2.202.280 on Linux, before 11.1.111.50 on Android 2.x and 3.x, and before 11.1.115.54 on A...Show more |
5Canonical DebianMozilla+2 more10Debian Linux FirefoxLinux Enterprise Desktop+7 moreApr 29, 2026 Apr 3, 2013 N/A· v4 N/A· v3 6.8 MEDIUM· v2 Integer signedness error in the pixman_fill_sse2 function in pixman-sse2.c in Pixman, as distributed with Cairo and used in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderb...Show more |
7Canonical DebianMariadb+4 more9Debian Linux Enterprise LinuxLinux Enterprise Desktop+6 moreApr 29, 2026 Mar 28, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 MariaDB 5.5.x before 5.5.30, 5.3.x before 5.3.13, 5.2.x before 5.2.15, and 5.1.x before 5.1.68, and Oracle MySQL 5.1.69 and earlier, 5.5.31 and earlier, and 5.6.11 and earlier allows remote attackers to cause a denial of...Show more |
Integer overflow in drivers/gpu/drm/i915/i915_gem_execbuffer.c in the i915 driver in the Direct Rendering Manager (DRM) subsystem in the Linux kernel through 3.8.3, as used in Google Chrome OS before 25.0.1364.173 and ot...Show more |
4Adobe OpensuseRedhat+1 more9Air Enterprise Linux DesktopEnterprise Linux Eus+6 moreApr 29, 2026 Mar 11, 2013 N/A· v4 N/A· v3 10.0 HIGH· v2 Integer overflow in Adobe Flash Player before 10.3.183.75 and 11.x before 11.7.700.169 on Windows and Mac OS X, before 10.3.183.75 and 11.x before 11.2.202.280 on Linux, before 11.1.111.50 on Android 2.x and 3.x, and bef...Show more |
3Debian OpensuseWireshark3Debian Linux OpensuseWiresharkApr 29, 2026 Mar 7, 2013 N/A· v4 N/A· v3 5.0 MEDIUM· v2 The DTLS dissector in Wireshark 1.6.x before 1.6.14 and 1.8.x before 1.8.6 does not validate the fragment offset before invoking the reassembly state machine, which allows remote attackers to cause a denial of service (a...Show more |
3Debian OpensuseWireshark3Debian Linux OpensuseWiresharkApr 29, 2026 Mar 7, 2013 N/A· v4 N/A· v3 7.8 HIGH· v2 epan/dissectors/packet-reload.c in the REsource LOcation And Discovery (aka RELOAD) dissector in Wireshark 1.8.x before 1.8.6 uses incorrect integer data types, which allows remote attackers to cause a denial of service...Show more |
3Debian OpensuseWireshark3Debian Linux OpensuseWiresharkApr 29, 2026 Mar 7, 2013 N/A· v4 N/A· v3 6.1 MEDIUM· v2 The dissect_diagnosticrequest function in epan/dissectors/packet-reload.c in the REsource LOcation And Discovery (aka RELOAD) dissector in Wireshark 1.8.x before 1.8.6 uses an incorrect integer data type, which allows re...Show more |
3Debian OpensuseWireshark3Debian Linux OpensuseWiresharkApr 29, 2026 Mar 7, 2013 N/A· v4 N/A· v3 6.1 MEDIUM· v2 The FCSP dissector in Wireshark 1.6.x before 1.6.14 and 1.8.x before 1.8.6 allows remote attackers to cause a denial of service (infinite loop) via a malformed packet. |
3Debian OpensuseWireshark3Debian Linux OpensuseWiresharkApr 29, 2026 Mar 7, 2013 N/A· v4 N/A· v3 3.3 LOW· v2 The CIMD dissector in Wireshark 1.6.x before 1.6.14 and 1.8.x before 1.8.6 allows remote attackers to cause a denial of service (application crash) via a malformed packet. |
3Debian OpensuseWireshark3Debian Linux OpensuseWiresharkApr 29, 2026 Mar 7, 2013 N/A· v4 N/A· v3 3.3 LOW· v2 The acn_add_dmp_data function in epan/dissectors/packet-acn.c in the ACN dissector in Wireshark 1.6.x before 1.6.14 and 1.8.x before 1.8.6 allows remote attackers to cause a denial of service (divide-by-zero error and ap...Show more |
2Opensuse Wireshark2Opensuse WiresharkApr 29, 2026 Mar 7, 2013 N/A· v4 N/A· v3 6.1 MEDIUM· v2 The AMPQ dissector in Wireshark 1.6.x before 1.6.14 and 1.8.x before 1.8.6 allows remote attackers to cause a denial of service (infinite loop) via a malformed packet. |