Vulnerabilities (CVE)

Vendor filter

Novell Subscribe

Product filter

Suse Linux Enterprise Server Subscribe

Filter

122 total CVE
CVE Vendors Products Updated CVSS
CVE-2014-3566 11 Openssl, Apple, Redhat and 8 more 21 Vios, Suse Linux Enterprise Software Development Kit, Aix and 18 more 2019-10-09 4.3
The SSL protocol 3.0, as used in OpenSSL through 1.0.1i and other products, uses nondeterministic CBC padding, which makes it easier for man-in-the-middle attackers to obtain cleartext data via a padding-oracle attack, aka the "POODLE" issue.
CVE-2016-4448 11 Apple, Slackware, Oracle and 8 more 31 Libxml2, Tvos, Suse Linux Enterprise Software Development Kit and 28 more 2019-09-25 10.0
Format string vulnerability in libxml2 before 2.9.4 allows attackers to have unspecified impact via format string specifiers in unknown vectors.
CVE-2017-1000366 9 Gnu, Redhat, Suse and 6 more 24 Glibc, Enterprise Linux, Linux Enterprise Server For Raspberry Pi and 21 more 2019-09-04 7.2
glibc contains a vulnerability that allows specially crafted LD_LIBRARY_PATH values to manipulate the heap/stack, causing them to alias, potentially resulting in arbitrary code execution. Please note that additional hardening changes have been...
CVE-2013-3567 4 Puppetlabs, Canonical, Novell and 1 more 6 Ubuntu Linux, Suse Linux Enterprise Desktop, Puppet and 3 more 2019-07-10 7.5
Puppet 2.7.x before 2.7.22 and 3.2.x before 3.2.2, and Puppet Enterprise before 2.8.2, deserializes untrusted YAML, which allows remote attackers to instantiate arbitrary Ruby classes and execute arbitrary code via a crafted REST API call.
CVE-2014-9761 6 Gnu, Suse, Fedoraproject and 3 more 10 Linux Enterprise Software Development Kit, Ubuntu Linux, Linux Enterprise Desktop and 7 more 2019-06-13 7.5
Multiple stack-based buffer overflows in the GNU C Library (aka glibc or libc6) before 2.23 allow context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long argument to the (1) nan,...
CVE-2015-0412 6 Redhat, Debian, Oracle and 3 more 9 Ubuntu Linux, Jre, Debian Linux and 6 more 2019-04-22 7.2
Unspecified vulnerability in Oracle Java SE 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to JAX-WS.
CVE-2015-0395 6 Redhat, Debian, Oracle and 3 more 8 Ubuntu Linux, Jre, Debian Linux and 5 more 2019-04-22 9.3
Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot.
CVE-2015-0383 7 Oracle, Canonical, Redhat and 4 more 11 Ubuntu Linux, Jre, Debian Linux and 8 more 2019-04-22 5.4
Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25; Java SE Embedded 7u71 and 8u6; and JRockit R27.8.4 and R28.3.4 allows local users to affect integrity and availability via unknown vectors related to Hotspot.
CVE-2016-4805 5 Canonical, Linux, Oracle and 2 more 12 Ubuntu Linux, Suse Linux Enterprise Live Patching, Suse Linux Enterprise Software Development Kit and 9 more 2019-04-22 7.2
Use-after-free vulnerability in drivers/net/ppp/ppp_generic.c in the Linux kernel before 4.5.2 allows local users to cause a denial of service (memory corruption and system crash, or spinlock) or possibly have unspecified other impact by removing...
CVE-2015-0410 6 Novell, Debian, Oracle and 3 more 10 Ubuntu Linux, Jre, Debian Linux and 7 more 2019-04-22 5.0
Unspecified vulnerability in the Java SE, Java SE Embedded, JRockit component in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25; Java SE Embedded 7u71 and 8u6; and JRockit R27.8.4 and R28.3.4 allows remote attackers to affect availability via...
CVE-2014-6601 6 Redhat, Debian, Oracle and 3 more 9 Ubuntu Linux, Jre, Debian Linux and 6 more 2019-04-22 10.0
Unspecified vulnerability in Oracle Java SE 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Hotspot.
CVE-2015-0408 6 Redhat, Debian, Oracle and 3 more 9 Ubuntu Linux, Jre, Debian Linux and 6 more 2019-04-22 10.0
Unspecified vulnerability in Oracle Java SE 5.0u75, 6u85, 7u72, and 8u25 allows remote attackers to affect confidentiality, integrity, and availability via vectors related to RMI.
CVE-2015-0240 4 Novell, Redhat, Samba and 1 more 6 Ubuntu Linux, Suse Linux Enterprise Software Development Kit, Suse Linux Enterprise Desktop and 3 more 2019-04-22 10.0
The Netlogon server implementation in smbd in Samba 3.5.x and 3.6.x before 3.6.25, 4.0.x before 4.0.25, 4.1.x before 4.1.17, and 4.2.x before 4.2.0rc5 performs a free operation on an uninitialized stack pointer, which allows remote attackers to...
CVE-2016-4578 6 Linux, Canonical, Novell and 3 more 19 Ubuntu Linux, Suse Linux Enterprise Live Patching, Linux Kernel and 16 more 2019-03-25 2.1
sound/core/timer.c in the Linux kernel through 4.6 does not initialize certain r1 data structures, which allows local users to obtain sensitive information from kernel stack memory via crafted use of the ALSA timer interface, related to the (1)...
CVE-2015-4913 4 Oracle, Novell, Redhat and 1 more 17 Leap, Suse Linux Enterprise Software Development Kit, Linux and 14 more 2019-02-12 3.5
Unspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier and 5.6.26 and earlier allows remote authenticated users to affect availability via vectors related to Server : DML, a different vulnerability than CVE-2015-4858.
CVE-2015-4792 4 Oracle, Novell, Redhat and 1 more 17 Leap, Suse Linux Enterprise Software Development Kit, Linux and 14 more 2019-02-11 1.7
Unspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier and 5.6.26 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : Partition, a different vulnerability than CVE-2015-4802.
CVE-2015-4802 4 Oracle, Novell, Redhat and 1 more 17 Leap, Suse Linux Enterprise Software Development Kit, Linux and 14 more 2019-02-11 4.0
Unspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier and 5.6.26 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server : Partition, a different vulnerability than CVE-2015-4792.
CVE-2015-4826 4 Oracle, Novell, Redhat and 1 more 16 Leap, Suse Linux Enterprise Software Development Kit, Suse Linux Enterprise Desktop and 13 more 2019-02-11 4.0
Unspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier and 5.6.26 and earlier allows remote authenticated users to affect confidentiality via unknown vectors related to Server : Types.
CVE-2015-4830 4 Oracle, Novell, Redhat and 1 more 16 Leap, Suse Linux Enterprise Software Development Kit, Suse Linux Enterprise Desktop and 13 more 2019-02-11 4.0
Unspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier and 5.6.26 and earlier allows remote authenticated users to affect integrity via unknown vectors related to Server : Security : Privileges.
CVE-2015-4836 4 Oracle, Novell, Redhat and 1 more 17 Leap, Suse Linux Enterprise Software Development Kit, Linux and 14 more 2019-02-11 2.8
Unspecified vulnerability in Oracle MySQL Server 5.5.45 and earlier, and 5.6.26 and earlier, allows remote authenticated users to affect availability via unknown vectors related to Server : SP.