CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2013-4517

    Last Modified: 11 Apr 2025

    Apache Santuario XML Security for Java before 1.5.6, when applying Transforms, allows remote attackers to cause a denial of service (memory consumption) via crafted Document Type Definitions (DTDs), related to signatures.

    Published: 1 Nov 2013
    5
    Medium

    CVE-2013-6075

    Last Modified: 11 Apr 2025

    The compare_dn function in utils/identification.c in strongSwan 4.3.3 through 5.1.1 allows (1) remote attackers to cause a denial of service (out-of-bounds read, NULL pointer dereference, and daemon crash) or (2) remote authenticated users to impersonate arbitrary users and bypass access restrictions via a crafted ID_DER_ASN1_DN ID, related to an "insufficient length check" during identity comparison.

    Published: 1 Nov 2013
    4.3
    Medium

    CVE-2013-6336

    Last Modified: 11 Apr 2025

    The ieee802154_map_rec function in epan/dissectors/packet-ieee802154.c in the IEEE 802.15.4 dissector in Wireshark 1.8.x before 1.8.11 and 1.10.x before 1.10.3 uses an incorrect pointer chain, which allows remote attackers to cause a denial of service (application crash) via a crafted packet.

    Published: 1 Nov 2013
    4.3
    Medium

    CVE-2013-6337

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the NBAP dissector in Wireshark 1.8.x before 1.8.11 and 1.10.x before 1.10.3 allows remote attackers to cause a denial of service (application crash) via a crafted packet.

    Published: 1 Nov 2013
    4.3
    Medium

    CVE-2013-6339

    Last Modified: 11 Apr 2025

    The dissect_openwire_type function in epan/dissectors/packet-openwire.c in the OpenWire dissector in Wireshark 1.8.x before 1.8.11 and 1.10.x before 1.10.3 allows remote attackers to cause a denial of service (loop) via a crafted packet.

    Published: 1 Nov 2013
    7.8
    High

    CVE-2013-5543

    Last Modified: 11 Apr 2025

    Cisco IOS XE 3.4 before 3.4.2S and 3.5 before 3.5.1S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload) via malformed ICMP error packets associated with a (1) TCP or (2) UDP session that is under inspection by the Zone-Based Firewall (ZBFW) component, aka Bug ID CSCtt26470.

    Published: 31 Oct 2013
    7.8
    High

    CVE-2013-5545

    Last Modified: 11 Apr 2025

    The PPTP ALG implementation in Cisco IOS XE 3.9 before 3.9.2S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload) by sending many PPTP packets over NAT, aka Bug ID CSCuh19936.

    Published: 31 Oct 2013
    7.8
    High

    CVE-2013-5547

    Last Modified: 11 Apr 2025

    Cisco IOS XE 3.9 before 3.9.2S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload) by sending malformed EoGRE packets over (1) IPv4 or (2) IPv6, aka Bug ID CSCuf08269.

    Published: 31 Oct 2013
    7.8
    High

    CVE-2013-5546

    Last Modified: 11 Apr 2025

    The TCP reassembly feature in Cisco IOS XE 3.7 before 3.7.3S and 3.8 before 3.8.1S on 1000 ASR devices allows remote attackers to cause a denial of service (device reload) via large TCP packets that are processed by the (1) NAT or (2) ALG component, aka Bug ID CSCud72509.

    Published: 31 Oct 2013
    7.1
    High

    CVE-2013-4348

    Last Modified: 11 Apr 2025

    The skb_flow_dissect function in net/core/flow_dissector.c in the Linux kernel through 3.12 allows remote attackers to cause a denial of service (infinite loop) via a small value in the IHL field of a packet with IPIP encapsulation.

    Published: 31 Oct 2013
    2.1
    Low

    CVE-2013-4463

    Last Modified: 11 Apr 2025

    OpenStack Compute (Nova) Folsom, Grizzly, and Havana does not properly verify the virtual size of a QCOW2 image, which allows local users to cause a denial of service (host file system disk consumption) via a compressed QCOW2 image. NOTE: this issue is due to an incomplete fix for CVE-2013-2096.

    Published: 31 Oct 2013
    1.9
    Low

    CVE-2013-4469

    Last Modified: 11 Apr 2025

    OpenStack Compute (Nova) Folsom, Grizzly, and Havana, when use_cow_images is set to False, does not verify the virtual size of a QCOW2 image, which allows local users to cause a denial of service (host file system disk consumption) by transferring an image with a large virtual size that does not contain a large amount of data from Glance. NOTE: this issue is due to an incomplete fix for CVE-2013-2096.

    Published: 31 Oct 2013
    10
    Critical

    CVE-2013-5592

    Last Modified: 11 Apr 2025

    Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 25.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

    Published: 30 Oct 2013
    7.5
    High

    CVE-2013-4159

    Last Modified: 12 Apr 2025

    ctdb before 2.3 in OpenSUSE 12.3 and 13.1 does not create temporary files securely, which has unspecified impact related to "several temp file vulnerabilities" in (1) tcp/tcp_connect.c, (2) server/eventscript.c, (3) tools/ctdb_diagnostics, (4) config/gdb_backtrace, and (5) include/ctdb_private.h.

    Published: 30 Oct 2013
    4.3
    Medium

    CVE-2013-5968

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in CA SiteMinder 12.0 through 12.51, and SiteMinder 6 Web Agents, allows remote attackers to inject arbitrary web script or HTML via vectors involving a " (double quote) character.

    Published: 29 Oct 2013
    7.8
    High

    CVE-2013-5741

    Last Modified: 11 Apr 2025

    Triangle Research International (aka Tri) Nano-10 PLC devices with firmware r81 and earlier do not properly handle large length values in MODBUS data, which allows remote attackers to cause a denial of service (transition to the interrupt state) via a crafted packet to TCP port 502.

    Published: 29 Oct 2013
    10
    Critical

    CVE-2013-5602

    Last Modified: 25 Nov 2025

    The Worker::SetEventListener function in the Web workers implementation in Mozilla Firefox before 25.0, Firefox ESR 17.x before 17.0.10 and 24.x before 24.1, Thunderbird before 24.1, Thunderbird ESR 17.x before 17.0.10, and SeaMonkey before 2.22 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via vectors related to direct proxies.

    Published: 29 Oct 2013
    10
    Critical

    CVE-2013-5600

    Last Modified: 25 Nov 2025

    Use-after-free vulnerability in the nsIOService::NewChannelFromURIWithProxyFlags function in Mozilla Firefox before 25.0, Firefox ESR 17.x before 17.0.10 and 24.x before 24.1, Thunderbird before 24.1, Thunderbird ESR 17.x before 17.0.10, and SeaMonkey before 2.22 allows remote attackers to execute arbitrary code via vectors involving a blob: URL.

    Published: 29 Oct 2013
    10
    Critical

    CVE-2013-5599

    Last Modified: 25 Nov 2025

    Use-after-free vulnerability in the nsIPresShell::GetPresContext function in the PresShell (aka presentation shell) implementation in Mozilla Firefox before 25.0, Firefox ESR 17.x before 17.0.10 and 24.x before 24.1, Thunderbird before 24.1, Thunderbird ESR 17.x before 17.0.10, and SeaMonkey before 2.22 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption and application crash) via vectors involving a CANVAS element, a mozTextStyle attribute, and an onresize event.

    Published: 29 Oct 2013
    8.3
    High

    CVE-2013-5598

    Last Modified: 25 Nov 2025

    PDF.js in Mozilla Firefox before 25.0 and Firefox ESR 24.x before 24.1 does not properly handle the appending of an IFRAME element, which allows remote attackers to read arbitrary files or execute arbitrary JavaScript code with chrome privileges by using this element within an embedded PDF object.

    Published: 29 Oct 2013
    4.3
    Medium

    CVE-2013-5595

    Last Modified: 25 Nov 2025

    The JavaScript engine in Mozilla Firefox before 25.0, Firefox ESR 17.x before 17.0.10 and 24.x before 24.1, Thunderbird before 24.1, Thunderbird ESR 17.x before 17.0.10, and SeaMonkey before 2.22 does not properly allocate memory for unspecified functions, which allows remote attackers to conduct buffer overflow attacks via a crafted web page.

    Published: 29 Oct 2013
    4.3
    Medium

    CVE-2013-5593

    Last Modified: 25 Nov 2025

    The SELECT element implementation in Mozilla Firefox before 25.0, Firefox ESR 24.x before 24.1, Thunderbird before 24.1, and SeaMonkey before 2.22 does not properly restrict the nature or placement of HTML within a dropdown menu, which allows remote attackers to spoof the address bar or conduct clickjacking attacks via vectors that trigger navigation off of a page containing this element.

    Published: 29 Oct 2013
    10
    Critical

    CVE-2013-5590

    Last Modified: 25 Nov 2025

    Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 25.0, Firefox ESR 17.x before 17.0.10 and 24.x before 24.1, Thunderbird before 24.1, Thunderbird ESR 17.x before 17.0.10, and SeaMonkey before 2.22 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

    Published: 29 Oct 2013
    10
    Critical

    CVE-2013-5597

    Last Modified: 25 Nov 2025

    Use-after-free vulnerability in the nsDocLoader::doStopDocumentLoad function in Mozilla Firefox before 25.0, Firefox ESR 17.x before 17.0.10 and 24.x before 24.1, Thunderbird before 24.1, Thunderbird ESR 17.x before 17.0.10, and SeaMonkey before 2.22 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via vectors involving a state-change event during an update of the offline cache.

    Published: 29 Oct 2013
    6.8
    Medium

    CVE-2013-5596

    Last Modified: 25 Nov 2025

    The cycle collection (CC) implementation in Mozilla Firefox before 25.0, Firefox ESR 24.x before 24.1, Thunderbird before 24.1, and SeaMonkey before 2.22 does not properly determine the thread for release of an image object, which allows remote attackers to execute arbitrary code or cause a denial of service (race condition and application crash) via a large HTML document containing IMG elements, as demonstrated by the Never-Ending Reddit on reddit.com.

    Published: 29 Oct 2013
    5
    Medium

    CVE-2013-4282

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in the reds_handle_ticket function in server/reds.c in SPICE 0.12.0 allows remote attackers to cause a denial of service (crash) via a long password in a SPICE ticket.

    Published: 29 Oct 2013
    5.2
    Medium

    CVE-2013-4416

    Last Modified: 11 Apr 2025

    The Ocaml xenstored implementation (oxenstored) in Xen 4.1.x, 4.2.x, and 4.3.x allows local guest domains to cause a denial of service (domain shutdown) via a large message reply.

    Published: 29 Oct 2013
    4.9
    Medium

    CVE-2013-4483

    Last Modified: 11 Apr 2025

    The ipc_rcu_putref function in ipc/util.c in the Linux kernel before 3.10 does not properly manage a reference count, which allows local users to cause a denial of service (memory consumption or system crash) via a crafted application.

    Published: 29 Oct 2013
    5
    Medium

    CVE-2013-4487

    Last Modified: 11 Apr 2025

    Off-by-one error in the dane_raw_tlsa in the DANE library (libdane) in GnuTLS 3.1.x before 3.1.16 and 3.2.x before 3.2.6 allows remote servers to cause a denial of service (memory corruption) via a response with more than four DANE entries. NOTE: this issue is due to an incomplete fix for CVE-2013-4466.

    Published: 29 Oct 2013
    10
    Critical

    CVE-2013-5591

    Last Modified: 25 Nov 2025

    Unspecified vulnerability in the browser engine in Mozilla Firefox before 25.0, Firefox ESR 24.x before 24.1, Thunderbird before 24.1, and SeaMonkey before 2.22 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

    Published: 29 Oct 2013
    9.3
    Critical

    CVE-2013-5604

    Last Modified: 25 Nov 2025

    The txXPathNodeUtils::getBaseURI function in the XSLT processor in Mozilla Firefox before 25.0, Firefox ESR 17.x before 17.0.10 and 24.x before 24.1, Thunderbird before 24.1, Thunderbird ESR 17.x before 17.0.10, and SeaMonkey before 2.22 does not properly initialize data, which allows remote attackers to execute arbitrary code or cause a denial of service (stack-based buffer overflow and application crash) via crafted documents.

    Published: 29 Oct 2013
    10
    Critical

    CVE-2013-5601

    Last Modified: 25 Nov 2025

    Use-after-free vulnerability in the nsEventListenerManager::SetEventHandler function in Mozilla Firefox before 25.0, Firefox ESR 17.x before 17.0.10 and 24.x before 24.1, Thunderbird before 24.1, Thunderbird ESR 17.x before 17.0.10, and SeaMonkey before 2.22 allows remote attackers to execute arbitrary code via vectors related to a memory allocation through the garbage collection (GC) API.

    Published: 29 Oct 2013
    10
    Critical

    CVE-2013-5603

    Last Modified: 25 Nov 2025

    Use-after-free vulnerability in the nsContentUtils::ContentIsHostIncludingDescendantOf function in Mozilla Firefox before 25.0, Firefox ESR 24.x before 24.1, Thunderbird before 24.1, and SeaMonkey before 2.22 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via vectors involving HTML document templates.

    Published: 29 Oct 2013
    7.1
    High

    CVE-2013-4563

    Last Modified: 11 Apr 2025

    The udp6_ufo_fragment function in net/ipv6/udp_offload.c in the Linux kernel through 3.12, when UDP Fragmentation Offload (UFO) is enabled, does not properly perform a certain size comparison before inserting a fragment header, which allows remote attackers to cause a denial of service (panic) via a large IPv6 UDP packet, as demonstrated by use of the Token Bucket Filter (TBF) queueing discipline.

    Published: 29 Oct 2013
    6.8
    Medium

    CVE-2013-2208

    Last Modified: 11 Apr 2025

    tpp 1.3.1 allows remote attackers to execute arbitrary commands via a --exec command in a TPP template file.

    Published: 28 Oct 2013
    6.8
    Medium

    CVE-2012-0825

    Last Modified: 11 Apr 2025

    Drupal 6.x before 6.23 and 7.x before 7.11 does not verify that Attribute Exchange (AX) information is signed, which allows remote attackers to modify potentially sensitive AX information without detection via a man-in-the-middle (MITM) attack.

    Published: 28 Oct 2013
    6.8
    Medium

    CVE-2012-0826

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in the Aggregator module in Drupal 6.x before 6.23 and 7.x before 7.11 allows remote attackers to hijack the authentication of unspecified victims for requests that update feeds and possibly cause a denial of service (loss of updates due to rate limit) via unspecified vectors.

    Published: 28 Oct 2013
    3.5
    Low

    CVE-2012-0827

    Last Modified: 11 Apr 2025

    The File module in Drupal 7.x before 7.11, when using unspecified field access modules, allows remote authenticated users to read arbitrary private files that are associated with restricted fields via unspecified vectors.

    Published: 28 Oct 2013
    6.8
    Medium

    CVE-2013-3243

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in OpenText/IXOS ECM for SAP NetWeaver allows remote attackers to execute arbitrary ABAP code via unknown vectors.

    Published: 28 Oct 2013
    4.3
    Medium

    CVE-2013-5744

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in Feng Office 2.3.2-rc and earlier allows remote attackers to inject arbitrary web script or HTML via an arbitrary ref_XXX parameter.

    Published: 28 Oct 2013
    8.5
    High

    CVE-2013-6012

    Last Modified: 11 Apr 2025

    Juniper Junos 12.1X44 before 12.1.X44-D20 and 12.1X45 before 12.1X45-D15, when the no-validate option is enabled, does not properly handle configuration validation errors during the config commit phase of the boot-up sequence, which allows remote attackers to bypass authentication via unspecified vectors.

    Published: 28 Oct 2013
    10
    Critical

    CVE-2013-6288

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the Apache Solr for TYPO3 (solr) extension before 2.8.3 for TYPO3 has unknown impact and remote attack vectors, related to "Insecure Unserialize."

    Published: 28 Oct 2013
    4.3
    Medium

    CVE-2013-6289

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Apache Solr for TYPO3 (solr) extension before 2.8.3 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 28 Oct 2013
    6.8
    Medium

    CVE-2010-1159

    Last Modified: 11 Apr 2025

    Multiple heap-based buffer overflows in Aircrack-ng before 1.1 allow remote attackers to cause a denial of service (crash) and execute arbitrary code via a (1) large length value in an EAPOL packet or (2) long EAPOL packet.

    Published: 28 Oct 2013
    6.8
    Medium

    CVE-2012-6303

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in the GetWavHeader function in generic/jkSoundFile.c in the Snack Sound Toolkit, as used in WaveSurfer 1.8.8p4, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large chunk size in a WAV file.

    Published: 28 Oct 2013
    4.3
    Medium

    CVE-2013-3704

    Last Modified: 11 Apr 2025

    The RPM GPG key import and handling feature in libzypp 12.15.0 and earlier reports a different key fingerprint than the one used to sign a repository when multiple key blobs are used, which might allow remote attackers to trick users into believing that the repository was signed by a more-trustworthy key.

    Published: 28 Oct 2013
    2.1
    Low

    CVE-2013-4393

    Last Modified: 11 Apr 2025

    journald in systemd, when the origin of native messages is set to file, allows local users to cause a denial of service (logging service blocking) via a crafted file descriptor.

    Published: 28 Oct 2013
    9.3
    Critical

    CVE-2013-6014

    Last Modified: 11 Apr 2025

    Juniper Junos 10.4 before 10.4S15, 11.4 before 11.4R9, 11.4X27 before 11.4X27.44, 12.1 before 12.1R7, 12.1X44 before 12.1X44-D20, 12.1X45 before 12.1X45-D15, 12.2 before 12.2R6, 12.3 before 12.3R3, 13.1 before 13.1R3, and 13.2 before 13.2R1, when Proxy ARP is enabled on an unnumbered interface, allows remote attackers to perform ARP poisoning attacks and possibly obtain sensitive information via a crafted ARP message.

    Published: 28 Oct 2013
    5.8
    Medium

    CVE-2013-6020

    Last Modified: 11 Apr 2025

    passwordRequestPOST.jsp in Tyler Technologies TaxWeb 3.13.3.1 sends different HTTP status codes for invalid password-recovery requests depending on whether the user account exists, which allows remote attackers to enumerate account names via a series of requests to the (1) Assessor, (2) Recorder, or (3) Treasurer application.

    Published: 28 Oct 2013
    5.5
    Medium

    CVE-2013-5430

    Last Modified: 11 Apr 2025

    The Jazz Team Server component in IBM Security AppScan Enterprise 8.x before 8.8 has a default username and password, which makes it easier for remote authenticated users to obtain unspecified access to this component by leveraging this credential information in an environment with applicable component installation details.

    Published: 28 Oct 2013