The Vigil@nce team watches public vulnerabilities impacting your computers, and then offers security solutions, a vigilance database and tools to fix them.

Computer vulnerabilities of VNX Operating Environment

libxml2: denial of service via Unbounded Allocations
An attacker can create malformed XML data, in order to generate a denial of service in applications linked to libxml2...
bulletinoct2015, CVE-2015-1819, DSA-2019-197, DSA-3430-1, FEDORA-2015-037f844d3e, FEDORA-2015-c24af963a2, openSUSE-SU-2015:2372-1, openSUSE-SU-2016:0106-1, RHSA-2015:1419-01, RHSA-2015:2550-01, TNS-2017-03, USN-2812-1, VIGILANCE-VUL-17472
OpenSSH: bypassing MaxAuthTries via KbdInteractiveDevices
An attacker can bypass the MaxAuthTries directive of OpenSSH, in order to perform a brute force attack...
9010048, bulletinoct2015, CERTFR-2015-AVI-431, CERTFR-2017-AVI-012, CERTFR-2017-AVI-022, cpujul2018, CVE-2015-5600, DLA-1500-1, DLA-1500-2, DSA-2019-197, FEDORA-2015-11981, FEDORA-2015-13469, FreeBSD-SA-15:16.openssh, JSA10697, JSA10774, JSA10840, K17113, NTAP-20151106-0001, RHSA-2015:2088-06, RHSA-2016:0466-01, SB10157, SB10164, SOL17113, SUSE-SU-2015:1581-1, SYMSA1337, USN-2710-1, USN-2710-2, VIGILANCE-VUL-17455
Apache httpd: three vulnerabilities
An attacker can use several vulnerabilities of Apache httpd...
1963361, 1965444, 1967197, 1969062, bulletinoct2015, c04832246, c04926789, CVE-2015-0253, CVE-2015-3183, CVE-2015-3185, DSA-2019-131, DSA-3325-1, DSA-3325-2, FEDORA-2015-11689, FEDORA-2015-11792, HPSBUX03435, HPSBUX03512, openSUSE-SU-2015:1684-1, RHSA-2015:1666-01, RHSA-2015:1667-01, RHSA-2015:1668-01, RHSA-2015:2659-01, RHSA-2015:2660-01, RHSA-2015:2661-01, RHSA-2016:0062-01, RHSA-2016:2054-01, RHSA-2016:2055-01, RHSA-2016:2056-01, SOL17251, SSA:2015-198-01, SSRT102254, SSRT102977, USN-2686-1, VIGILANCE-VUL-17378
Oracle Java: several vulnerabilities of July 2015
Several vulnerabilities of Oracle Java were announced in July 2015...
1963330, 1963331, 1963812, 1964236, 1966040, 1966536, 1967222, 1967498, 1967893, 1968485, 1972455, 206954, 9010041, 9010044, BSA-2016-002, CERTFR-2015-ALE-007, CERTFR-2015-AVI-305, CERTFR-2016-AVI-128, cpujul2015, CVE-2015-2590, CVE-2015-2596, CVE-2015-2597, CVE-2015-2601, CVE-2015-2613, CVE-2015-2619, CVE-2015-2621, CVE-2015-2625, CVE-2015-2627, CVE-2015-2628, CVE-2015-2632, CVE-2015-2637, CVE-2015-2638, CVE-2015-2659, CVE-2015-2664, CVE-2015-2808, CVE-2015-4000, CVE-2015-4729, CVE-2015-4731, CVE-2015-4732, CVE-2015-4733, CVE-2015-4736, CVE-2015-4748, CVE-2015-4749, CVE-2015-4760, DSA-2019-197, DSA-3316-1, DSA-3339-1, ESA-2015-134, FEDORA-2015-11859, FEDORA-2015-11860, JSA10727, NTAP-20150715-0001, NTAP-20151028-0001, openSUSE-SU-2015:1288-1, openSUSE-SU-2015:1289-1, RHSA-2015:1228-01, RHSA-2015:1229-01, RHSA-2015:1230-01, RHSA-2015:1241-01, RHSA-2015:1242-01, RHSA-2015:1243-01, RHSA-2015:1485-01, RHSA-2015:1486-01, RHSA-2015:1488-01, RHSA-2015:1526-01, RHSA-2015:1544-01, SB10139, SOL17079, SOL17169, SOL17170, SOL17171, SOL17173, SUSE-SU-2015:1319-1, SUSE-SU-2015:1320-1, SUSE-SU-2015:1329-1, SUSE-SU-2015:1331-1, SUSE-SU-2015:1345-1, SUSE-SU-2015:1375-1, SUSE-SU-2015:1509-1, SUSE-SU-2015:2166-1, SUSE-SU-2015:2192-1, USN-2696-1, USN-2706-1, VIGILANCE-VUL-17371
ISC Bind: denial of service via DNSCEC validation
An attacker can force an assertion error in the DNSSEC validation of ISC Bind, in order to trigger a denial of service...
BSA-2015-009, c04745746, CVE-2015-4620, DSA-2019-197, DSA-3304-1, FEDORA-2015-11483, FEDORA-2015-11484, FreeBSD-SA-15:11.bind, HPSBUX03379, openSUSE-SU-2015:1250-1, openSUSE-SU-2015:1250-2, openSUSE-SU-2015:1326-1, RHSA-2015:1443-01, RHSA-2015:1471-01, SOL16912, SSA:2015-188-04, SSRT101976, SUSE-SU-2015:1205-1, USN-2669-1, VIGILANCE-VUL-17320
libidn, curl: information disclosure
An attacker can retrieve a memory fragment from a process using libcurl, in order to get sensitive information...
CVE-2015-2059, DLA-476-1, DSA-2020-289, DSA-3578-1, FEDORA-2015-11562, FEDORA-2015-11621, openSUSE-SU-2015:1261-1, openSUSE-SU-2016:2135-1, openSUSE-SU-2016:2277-1, USN-3068-1, VIGILANCE-VUL-17294
Mozilla Firefox, Thunderbird, SeaMonkey: multiple vulnerabilities
An attacker can use several vulnerabilities of Firefox, Thunderbird, SeaMonkey...
bulletinjul2015, bulletinoct2015, CERTFR-2015-AVI-279, CVE-2015-2721, CVE-2015-2722, CVE-2015-2724, CVE-2015-2725, CVE-2015-2726, CVE-2015-2727, CVE-2015-2728, CVE-2015-2729, CVE-2015-2730, CVE-2015-2731, CVE-2015-2733, CVE-2015-2734, CVE-2015-2735, CVE-2015-2736, CVE-2015-2737, CVE-2015-2738, CVE-2015-2739, CVE-2015-2740, CVE-2015-2741, CVE-2015-2742, CVE-2015-2743, CVE-2015-4000, DSA-2019-197, DSA-3300-1, DSA-3324-1, FEDORA-2015-11387, FEDORA-2015-11480, FEDORA-2015-11502, FEDORA-2015-11598, Logjam, MFSA-2015-59, MFSA-2015-60, MFSA-2015-61, MFSA-2015-62, MFSA-2015-63, MFSA-2015-64, MFSA-2015-65, MFSA-2015-66, MFSA-2015-67, MFSA-2015-68, MFSA-2015-69, MFSA-2015-70, MFSA-2015-71, openSUSE-SU-2015:1229-1, openSUSE-SU-2015:1266-1, RHSA-2015:1207-01, RHSA-2015:1455-01, SSA:2015-188-02, SSA:2015-192-01, SUSE-SU-2015:1268-1, SUSE-SU-2015:1268-2, SUSE-SU-2015:1269-1, SUSE-SU-2015:1449-1, USN-2656-1, USN-2656-2, USN-2672-1, USN-2673-1, VIGILANCE-VUL-17299
OpenSSH: two vulnerabilities
An attacker can use several vulnerabilities of OpenSSH...
CERTFR-2015-AVI-282, CERTFR-2017-AVI-012, CERTFR-2017-AVI-022, CVE-2015-5352, DLA-1500-1, DLA-1500-2, DSA-2019-197, FEDORA-2015-11063, FEDORA-2015-11067, JSA10774, NTAP-20181023-0001, RHSA-2016:0741-01, SOL17461, SUSE-SU-2015:1581-1, SYMSA1337, USN-2710-1, USN-2710-2, VIGILANCE-VUL-17276
pam: denial of service with very long passwords
An attacker can send passwords with a length greater than 65536 = 2^16 characters to a PAM enabled service, in order to trigger a denial of servive...
CVE-2015-3238, DSA-2020-030, DSA-2020-289, FEDORA-2015-10830, FEDORA-2015-10848, RHSA-2015:1640-01, SOL17494, USN-2935-1, USN-2935-2, USN-2935-3, VIGILANCE-VUL-17275
OpenSSL: use after free via DTLS
An attacker can force the usage of a freed memory area via DTLS in OpenSSL, in order to trigger a denial of service, and possibly to execute code...
1961569, 9010038, 9010039, BSA-2015-006, c05184351, CERTFR-2015-AVI-257, cisco-sa-20150612-openssl, CVE-2014-8176, DSA-2019-197, DSA-3287-1, HPSBHF03613, NetBSD-SA2015-008, NTAP-20150616-0001, openSUSE-SU-2015:1277-1, PAN-SA-2016-0020, PAN-SA-2016-0028, RHSA-2015:1115-01, SA98, SB10122, SOL16920, USN-2639-1, VIGILANCE-VUL-17118
Our database contains other pages. You can request a free trial to read them.