Suse Linux vulnerabilities
193 known vulnerabilities affecting suse/suse_linux.
Total CVEs
193
CISA KEV
0
Public exploits
51
Exploited in wild
0
Severity breakdown
CRITICAL28HIGH74MEDIUM66LOW25
Vulnerabilities
Page 3 of 10
CVE-2004-1175HIGHCVSS 7.5v8.0v8.1+4 more2005-04-14
CVE-2004-1175 [HIGH] CVE-2004-1175: fish.c in midnight commander allows remote attackers to execute arbitrary programs via "insecure fil
fish.c in midnight commander allows remote attackers to execute arbitrary programs via "insecure filename quoting," possibly using shell metacharacters.
nvd
CVE-2004-1005HIGHCVSS 7.5v8.0v8.1+4 more2005-04-14
CVE-2004-1005 [HIGH] CVE-2004-1005: Multiple buffer overflows in Midnight Commander (mc) 4.5.55 and earlier allow remote attackers to ha
Multiple buffer overflows in Midnight Commander (mc) 4.5.55 and earlier allow remote attackers to have an unknown impact.
nvd
CVE-2004-1235MEDIUMCVSS 6.2PoCv1.0v8+5 more2005-04-14
CVE-2004-1235 [MEDIUM] CVE-2004-1235: Race condition in the (1) load_elf_library and (2) binfmt_aout function calls for uselib in Linux ke
Race condition in the (1) load_elf_library and (2) binfmt_aout function calls for uselib in Linux kernel 2.4 through 2.429-rc2 and 2.6 through 2.6.10 allows local users to execute arbitrary code by manipulating the VMA descriptor.
nvd
CVE-2004-1093MEDIUMCVSS 5.0v8.0v8.1+4 more2005-04-14
CVE-2004-1093 [MEDIUM] CVE-2004-1093: Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service via
Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service via "use of already freed memory."
nvd
CVE-2004-1090MEDIUMCVSS 5.0v8.0v8.1+4 more2005-04-14
CVE-2004-1090 [MEDIUM] CVE-2004-1090: Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service via
Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service via "a corrupt section header."
nvd
CVE-2005-1043MEDIUMCVSS 5.0v1.0v2.0+26 more2005-04-14
CVE-2005-1043 [MEDIUM] CVE-2005-1043: exif.c in PHP before 4.3.11 allows remote attackers to cause a denial of service (memory consumption
exif.c in PHP before 4.3.11 allows remote attackers to cause a denial of service (memory consumption and crash) via an EXIF header with a large IFD nesting level, which causes significant stack recursion.
nvd
CVE-2004-1009MEDIUMCVSS 5.0v8.0v8.1+4 more2005-04-14
CVE-2004-1009 [MEDIUM] CVE-2004-1009: Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service (inf
Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service (infinite loop) via unknown attack vectors.
nvd
CVE-2004-1092MEDIUMCVSS 5.0v8.0v8.1+4 more2005-04-14
CVE-2004-1092 [MEDIUM] CVE-2004-1092: Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service by c
Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service by causing mc to free unallocated memory.
nvd
CVE-2004-1174MEDIUMCVSS 5.0v8.0v8.1+4 more2005-04-14
CVE-2004-1174 [MEDIUM] CVE-2004-1174: direntry.c in Midnight Commander (mc) 4.5.55 and earlier allows attackers to cause a denial of servi
direntry.c in Midnight Commander (mc) 4.5.55 and earlier allows attackers to cause a denial of service by "manipulating non-existing file handles."
nvd
CVE-2004-1091MEDIUMCVSS 5.0v8.0v8.1+4 more2005-04-14
CVE-2004-1091 [MEDIUM] CVE-2004-1091: Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service by t
Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service by triggering a null dereference.
nvd
CVE-2004-1237LOWCVSS 2.1v1.0v8+5 more2005-04-14
CVE-2004-1237 [LOW] CVE-2004-1237: Unknown vulnerability in the system call filtering code in the audit subsystem for Red Hat Enterpris
Unknown vulnerability in the system call filtering code in the audit subsystem for Red Hat Enterprise Linux 3 allows local users to cause a denial of service (system crash) via unknown vectors.
nvd
CVE-2005-0750HIGHCVSS 7.2PoCv1.0v9.32005-03-27
CVE-2005-0750 [HIGH] CVE-2005-0750: The bluez_sock_create function in the Bluetooth stack for Linux kernel 2.4.6 through 2.4.30-rc1 and
The bluez_sock_create function in the Bluetooth stack for Linux kernel 2.4.6 through 2.4.30-rc1 and 2.6 through 2.6.11.5 allows local users to gain privileges via (1) socket or (2) socketpair call with a negative protocol value.
nvd
CVE-2005-0384MEDIUMCVSS 5.0v8.2v9.0+2 more2005-03-15
CVE-2005-0384 [MEDIUM] CVE-2005-0384: Unknown vulnerability in the PPP driver for the Linux kernel 2.6.8.1 allows remote attackers to caus
Unknown vulnerability in the PPP driver for the Linux kernel 2.6.8.1 allows remote attackers to cause a denial of service (kernel crash) via a pppd client.
nvd
CVE-2005-0398MEDIUMCVSS 5.0v9.1v9.22005-03-14
CVE-2005-0398 [MEDIUM] CVE-2005-0398: The KAME racoon daemon in ipsec-tools before 0.5 allows remote attackers to cause a denial of servic
The KAME racoon daemon in ipsec-tools before 0.5 allows remote attackers to cause a denial of service (crash) via malformed ISAKMP packets.
nvd
CVE-2005-0470MEDIUMCVSS 5.0v9.22005-03-14
CVE-2005-0470 [MEDIUM] CVE-2005-0470: Buffer overflow in wpa_supplicant before 0.2.7 allows remote attackers to cause a denial of service
Buffer overflow in wpa_supplicant before 0.2.7 allows remote attackers to cause a denial of service (segmentation fault) via invalid EAPOL-Key packet data.
nvd
CVE-2005-0639HIGHCVSS 7.5v1.0v2.0+26 more2005-03-02
CVE-2005-0639 [HIGH] CVE-2005-0639: Multiple vulnerabilities in xli before 1.17 may allow remote attackers to execute arbitrary code via
Multiple vulnerabilities in xli before 1.17 may allow remote attackers to execute arbitrary code via "buffer management errors" from certain image properties, some of which may be related to integer overflows in PPM files.
nvd
CVE-2005-0638HIGHCVSS 7.5v1.0v2.0+26 more2005-03-02
CVE-2005-0638 [HIGH] CVE-2005-0638: xloadimage before 4.1-r2, and xli before 1.17, allows attackers to execute arbitrary commands via sh
xloadimage before 4.1-r2, and xli before 1.17, allows attackers to execute arbitrary commands via shell metacharacters in filenames for compressed images, which are not properly quoted when calling the gunzip command.
nvd
CVE-2005-0605HIGHCVSS 7.5v6.1v6.2+12 more2005-03-02
CVE-2005-0605 [HIGH] CVE-2005-0605: scan.c for LibXPM may allow attackers to execute arbitrary code via a negative bitmap_unit value tha
scan.c for LibXPM may allow attackers to execute arbitrary code via a negative bitmap_unit value that leads to a buffer overflow.
nvd
CVE-2004-0990CRITICALCVSS 10.0PoCv8.0v8.1+4 more2005-03-01
CVE-2004-0990 [CRITICAL] CVE-2004-0990: Integer overflow in GD Graphics Library libgd 2.0.28 (libgd2), and possibly other versions, allows r
Integer overflow in GD Graphics Library libgd 2.0.28 (libgd2), and possibly other versions, allows remote attackers to cause a denial of service and possibly execute arbitrary code via PNG image files with large image rows values that lead to a heap-based buffer overflow in the gdImageCreateFromPngCtx function, a different set of vulnerabilities than CVE-20
nvd
CVE-2004-0981CRITICALCVSS 10.0v8.0v8.1+4 more2005-02-09
CVE-2004-0981 [CRITICAL] CVE-2004-0981: Buffer overflow in the EXIF parsing routine in ImageMagick before 6.1.0 allows remote attackers to e
Buffer overflow in the EXIF parsing routine in ImageMagick before 6.1.0 allows remote attackers to execute arbitrary code via a certain image file.
nvd