Search
15,095 CVEs · Low severity
CVEs (15,095, showing first 500)
Only the first 500 CVEs (by current sort) are shown when searching without a keyword. Add a search term above to narrow the results.
Showing 476–500 of 15,095 (capped at 500)
| CVE ID | Severity | Patch | CVSS ↑ | Published | Description |
|---|---|---|---|---|---|
| CVE-2011-4098 | LOW | Patched | 1.9 | 2013-06-08 | The fallocate implementation in the GFS2 filesystem in the Linux kernel before 3.2 relies on the page cache, which might allow local users to cause a denial of service by p… |
| CVE-2013-1952 | LOW | 1.9 | 2013-05-13 | Xen 4.x, when using Intel VT-d for a bus mastering capable PCI device, does not properly check the source when accessing a bridge device's interrupt remapping table entries… | |
| CVE-2013-1917 | LOW | 1.9 | 2013-05-13 | Xen 3.1 through 4.x, when running 64-bit hosts on Intel CPUs, does not clear the NT flag when using an IRET after a SYSENTER instruction, which allows PV guest users to cau… | |
| CVE-2013-1958 | LOW | Patched | 1.9 | 2013-04-24 | The scm_check_creds function in net/core/scm.c in the Linux kernel before 3.8.6 does not properly enforce capability requirements for controlling the PID value associated w… |
| CVE-2012-6140 | LOW | Patched | 1.9 | 2013-04-24 | pam_google_authenticator.c in the PAM module in Google Authenticator before 1.0 requires user-readable permissions for the secret file, which allows local users to bypass i… |
| CVE-2013-0541 | LOW | Patched | 1.9 | 2013-04-24 | Buffer overflow in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.29, 8.0 before 8.0.0.6, and 8.5 before 8.5.0.2 on Windows, when a localOS re… |
| CVE-2013-0122 | LOW | Patched | 1.9 | 2013-04-22 | The avast! Mobile Security application before 2.0.4400 for Android allows attackers to cause a denial of service (application crash) via a crafted application that sends an… |
| CVE-2013-0403 | LOW | 1.9 | 2013-04-17 | Unspecified vulnerability in Oracle Sun Solaris 8, 9, 10, and 11 allows local users to affect availability via unknown vectors related to Utility. | |
| CVE-2013-2302 | LOW | 1.9 | 2013-04-04 | TransWARE Active! mail 6, when an external public interface is used, allows local users to obtain sensitive information belonging to arbitrary users by leveraging shell acc… | |
| CVE-2013-2636 | LOW | Patched | 1.9 | 2013-03-22 | net/bridge/br_mdb.c in the Linux kernel before 3.8.4 does not initialize certain structures, which allows local users to obtain sensitive information from kernel memory via… |
| CVE-2013-2634 | LOW | Patched | 1.9 | 2013-03-22 | net/dcb/dcbnl.c in the Linux kernel before 3.8.4 does not initialize certain structures, which allows local users to obtain sensitive information from kernel stack memory v… |
| CVE-2013-2635 | LOW | Patched | 1.9 | 2013-03-22 | The rtnl_fill_ifinfo function in net/core/rtnetlink.c in the Linux kernel before 3.8.4 does not initialize a certain structure member, which allows local users to obtain se… |
| CVE-2013-1427 | LOW | Patched | 1.9 | 2013-03-21 | The configuration file for the FastCGI PHP support for lighttpd before 1.4.28 on Debian GNU/Linux creates a socket file with a predictable name in /tmp, which allows local … |
| CVE-2013-0979 | LOW | Patched | 1.9 | 2013-03-20 | lockdownd in Lockdown in Apple iOS before 6.1.3 does not properly consider file types during the permission-setting step of a backup restoration, which allows local users t… |
| CVE-2012-6549 | LOW | Patched | 1.9 | 2013-03-15 | The isofs_export_encode_fh function in fs/isofs/export.c in the Linux kernel before 3.6 does not initialize a certain structure member, which allows local users to obtain s… |
| CVE-2012-6537 | LOW | Patched | 1.9 | 2013-03-15 | net/xfrm/xfrm_user.c in the Linux kernel before 3.6 does not initialize certain structures, which allows local users to obtain sensitive information from kernel memory by l… |
| CVE-2012-6538 | LOW | Patched | 1.9 | 2013-03-15 | The copy_to_user_auth function in net/xfrm/xfrm_user.c in the Linux kernel before 3.6 uses an incorrect C library function for copying a string, which allows local users to… |
| CVE-2012-6539 | LOW | Patched | 1.9 | 2013-03-15 | The dev_ifconf function in net/socket.c in the Linux kernel before 3.6 does not initialize a certain structure, which allows local users to obtain sensitive information fro… |
| CVE-2012-6540 | LOW | Patched | 1.9 | 2013-03-15 | The do_ip_vs_get_ctl function in net/netfilter/ipvs/ip_vs_ctl.c in the Linux kernel before 3.6 does not initialize a certain structure for IP_VS_SO_GET_TIMEOUT commands, wh… |
| CVE-2012-6541 | LOW | Patched | 1.9 | 2013-03-15 | The ccid3_hc_tx_getsockopt function in net/dccp/ccids/ccid3.c in the Linux kernel before 3.6 does not initialize a certain structure, which allows local users to obtain sen… |
| CVE-2012-6542 | LOW | Patched | 1.9 | 2013-03-15 | The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel before 3.6 has an incorrect return value in certain circumstances, which allows local users to obtain se… |
| CVE-2012-6543 | LOW | Patched | 1.9 | 2013-03-15 | The l2tp_ip6_getname function in net/l2tp/l2tp_ip6.c in the Linux kernel before 3.6 does not initialize a certain structure member, which allows local users to obtain sensi… |
| CVE-2012-6544 | LOW | Patched | 1.9 | 2013-03-15 | The Bluetooth protocol stack in the Linux kernel before 3.6 does not properly initialize certain structures, which allows local users to obtain sensitive information from k… |
| CVE-2012-6545 | LOW | Patched | 1.9 | 2013-03-15 | The Bluetooth RFCOMM implementation in the Linux kernel before 3.6 does not properly initialize certain structures, which allows local users to obtain sensitive information… |
| CVE-2012-6546 | LOW | Patched | 1.9 | 2013-03-15 | The ATM implementation in the Linux kernel before 3.6 does not initialize certain structures, which allows local users to obtain sensitive information from kernel stack mem… |