The Vigil@nce team watches public vulnerabilities impacting your computers, and then offers security solutions, a vigilance database and tools to fix them.

Computer vulnerabilities of Unisphere EMC

curl: two vulnerabilities
An attacker can use several vulnerabilities of libcurl...
2014495, bulletinapr2018, CVE-2018-1000005, CVE-2018-1000007, DLA-1263-1, DSA-2019-114, DSA-2020-030, DSA-4098-1, FEDORA-2018-241a5a2409, FEDORA-2018-85655b12b6, JSA10874, openSUSE-SU-2018:0236-1, RHSA-2018:3157-01, RHSA-2018:3558-01, RHSA-2020:0544-01, RHSA-2020:0594-01, SSA:2018-024-01, USN-3554-1, USN-3554-2, VIGILANCE-VUL-25147
glibc: memory leak via glob
An attacker can create a memory leak via glob() of glibc, in order to trigger a denial of service...
CVE-2017-15671, DSA-2019-114, DSA-2019-131, DSA-2019-197, FEDORA-2018-8e27ad96ed, openSUSE-SU-2018:0089-1, SUSE-SU-2018:0074-1, SUSE-SU-2018:2185-1, SUSE-SU-2018:2187-1, SUSE-SU-2018:4067-1, VIGILANCE-VUL-25040
glibc: memory leak via glob
An attacker can create a memory leak via glob() of glibc, in order to trigger a denial of service...
CVE-2017-15670, DSA-2019-114, DSA-2019-131, DSA-2019-197, FEDORA-2018-8e27ad96ed, openSUSE-SU-2018:0089-1, RHSA-2018:0805-01, RHSA-2018:1879-01, SUSE-SU-2018:0074-1, SUSE-SU-2018:2185-1, SUSE-SU-2018:2187-1, SUSE-SU-2018:2883-1, USN-3534-1, VIGILANCE-VUL-25039
glibc: buffer overflow via User Names Unescaping
An attacker can generate a buffer overflow via User Names Unescaping of glibc, in order to trigger a denial of service, and possibly to run code...
CVE-2017-15804, DSA-2019-114, DSA-2019-131, DSA-2019-197, FEDORA-2017-fb5e227432, openSUSE-SU-2018:0089-1, RHSA-2018:0805-01, RHSA-2018:1879-01, SUSE-SU-2018:0074-1, SUSE-SU-2018:2185-1, SUSE-SU-2018:2187-1, SUSE-SU-2018:2883-1, USN-3534-1, VIGILANCE-VUL-24838
OpenSSL: information disclosure via rsaz_1024_mul_avx2
An attacker can bypass access restrictions to data via rsaz_1024_mul_avx2() of OpenSSL, in order to obtain sensitive information...
2014324, bulletinapr2018, bulletinjan2018, CERTFR-2017-AVI-452, CERTFR-2018-AVI-155, cpuapr2018, cpuapr2019, cpujan2018, cpujan2019, cpujul2018, cpujul2019, cpuoct2018, CVE-2017-3738, DSA-2020-062, DSA-4065-1, DSA-4157-1, FEDORA-2017-e6be32cb7a, FreeBSD-SA-17:12.openssl, ibm10716907, ibm10717405, ibm10717409, ibm10719113, JSA10851, openSUSE-SU-2017:3345-1, openSUSE-SU-2018:0029-1, openSUSE-SU-2018:0315-1, RHSA-2018:0998-01, SA159, SSA:2017-342-01, SUSE-SU-2019:14246-1, swg21647054, USN-3512-1, VIGILANCE-VUL-24698
OpenSSL: information disclosure via SSL_read/SSL_write After Error
An attacker can bypass access restrictions to data via SSL_read/SSL_write After Error of OpenSSL, in order to obtain sensitive information...
2014324, bulletinapr2018, bulletinjan2018, CERTFR-2017-AVI-452, CERTFR-2018-AVI-376, cpuapr2018, cpujan2018, cpujul2018, cpujul2019, CVE-2017-3737, DSA-2020-062, DSA-4065-1, FreeBSD-SA-17:12.openssl, ibm10715641, ibm10716907, ibm10717405, ibm10717409, ibm10719113, ibm10738249, JSA10851, JSA10873, openSUSE-SU-2017:3345-1, openSUSE-SU-2018:0223-1, openSUSE-SU-2018:1057-1, RHSA-2018:0998-01, SA159, SSA-179516, SSA:2017-342-01, swg21647054, USN-3512-1, VIGILANCE-VUL-24697
EMC Unisphere for VMAX Virtual Appliance: privilege escalation via vApp Manager
An attacker can bypass restrictions of EMC Unisphere for VMAX Virtual Appliance, in order to escalate his privileges...
CVE-2017-14375, ESA-2017-137, VIGILANCE-VUL-24310, ZDI-17-919
curl: out-of-bounds memory reading via FTP PWD
An attacker can force a read at an invalid address via FTP PWD of curl, in order to trigger a denial of service, or to obtain sensitive information...
2011879, bulletinapr2018, CVE-2017-1000254, DLA-1121-1, DSA-2019-114, DSA-2020-030, DSA-3992-1, FEDORA-2017-601b4c20a4, HT208331, HT208394, JSA10874, K-511316, openSUSE-SU-2017:2880-1, RHSA-2018:3558-01, SSA:2017-279-01, STORM-2019-002, USN-3441-1, USN-3441-2, VIGILANCE-VUL-24018
Apache Struts: code execution via Freemarker
An attacker can use a vulnerability via Freemarker of Apache Struts, in order to run code...
3889403, 3905487, 504595, 509396, CVE-2017-12611, ESA-2017-121, ESA-2017-128, S2-053, VIGILANCE-VUL-23756
glibc: use after free via clntudp_call
An attacker can force the usage of a freed memory area via clntudp_call() of glibc, in order to trigger a denial of service, and possibly to run code...
CVE-2017-12133, DSA-2019-114, FEDORA-2017-270ab2baa3, openSUSE-SU-2018:0668-1, USN-4416-1, VIGILANCE-VUL-23725
Our database contains other pages. You can request a free trial to read them.