Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
opensuse project leap 42.1 vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2017-6542
The ssh_agent_channel_data function in PuTTY prior to 0.68 allows remote malicious users to have unspecified impact via a large length value in an agent protocol message and leveraging the ability to connect to the Unix-domain socket representing the forwarded agent connection, w...
Putty Putty
Opensuse Project Leap 42.1
Opensuse Leap 42.2
1 EDB exploit
2.7
CVSSv3
CVE-2017-5930
The AliasHandler component in PostfixAdmin prior to 3.0.2 allows remote authenticated domain admins to delete protected aliases via the delete parameter to delete.php, involving a missing permission check.
Opensuse Leap 42.1
Opensuse Leap 42.2
Postfixadmin Project Postfixadmin
5.5
CVSSv3
CVE-2016-10068
The MSL interpreter in ImageMagick prior to 6.9.6-4 allows remote malicious users to cause a denial of service (segmentation fault and application crash) via a crafted XML file.
Imagemagick Imagemagick
Opensuse Leap 42.2
Opensuse Project Leap 42.1
6.1
CVSSv3
CVE-2015-8010
Cross-site scripting (XSS) vulnerability in the Classic-UI with the CSV export link and pagination feature in Icinga prior to 1.14 allows remote malicious users to inject arbitrary web script or HTML via the query string to cgi-bin/status.cgi.
Icinga Icinga
Opensuse Leap 42.2
Opensuse Project Leap 42.1
7.5
CVSSv3
CVE-2015-3138
print-wb.c in tcpdump prior to 4.7.4 allows remote malicious users to cause a denial of service (segmentation fault and process crash).
Tcpdump Tcpdump
Opensuse Project Leap 42.1
Opensuse Leap 42.2
7.5
CVSSv3
CVE-2014-3462
The ".encfs6.xml" configuration file in encfs prior to 1.7.5 allows remote malicious users to access sensitive data by setting "blockMACBytes" to 0 and adding 8 to "blockMACRandBytes".
Opensuse Leap 42.1
Opensuse Leap 42.2
Opensuse Opensuse 13.2
Encfs Project Encfs
5.5
CVSSv3
CVE-2016-10069
coders/mat.c in ImageMagick prior to 6.9.4-5 allows remote malicious users to cause a denial of service (application crash) via a mat file with an invalid number of frames.
Imagemagick Imagemagick
Opensuse Project Leap 42.1
6.5
CVSSv3
CVE-2016-5316
Out-of-bounds read in the PixarLogCleanup function in tif_pixarlog.c in libtiff 4.0.6 and previous versions allows remote malicious users to crash the application by sending a crafted TIFF image to the rgb2ycbcr tool.
Libtiff Libtiff
Opensuse Opensuse 13.1
Opensuse Opensuse 13.2
Opensuse Project Leap 42.1
6.1
CVSSv3
CVE-2017-5938
Cross-site scripting (XSS) vulnerability in the nav_path function in lib/viewvc.py in ViewVC prior to 1.0.14 and 1.1.x prior to 1.1.26 allows remote malicious users to inject arbitrary web script or HTML via the nav_data name.
Debian Debian Linux 8.0
Opensuse Leap 42.2
Opensuse Project Leap 42.1
Viewvc Viewvc
NA
CVE-2015-5218
Buffer overflow in text-utils/colcrt.c in colcrt in util-linux prior to 2.27 allows local users to cause a denial of service (crash) via a crafted file, related to the page global variable.
Kernel Util-linux
Opensuse Opensuse 13.1
Opensuse Project Leap 42.1
Opensuse Opensuse 13.2
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-33572
CVE-2024-24919
CVE-2024-0230
CVE-2024-32714
HTML injection
local file inclusion
CVE-2024-31098
CVE-2024-31244
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
6
NEXT »