Known Vulnerabilities for products from Mageia Project

Listed below are 13 of the newest known vulnerabilities associated with the vendor "Mageia Project".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2015-2296 The resolve_redirects function in sessions.py in requests 2.1.0 through 2.5.3 allows remote attackers to conduct session fixa... 6.8 - MEDIUM 2015-03-18 2021-03-18
CVE-2014-9274 UnRTF allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code as demonstrated by a f... 7.5 - HIGH 2014-12-09 2016-12-22
CVE-2014-9039 wp-login.php in WordPress before 3.7.5, 3.8.x before 3.8.5, 3.9.x before 3.9.3, and 4.x before 4.0.1 might allow remote attac... 4.3 - MEDIUM 2014-11-25 2016-06-30
CVE-2014-9037 WordPress before 3.7.5, 3.8.x before 3.8.5, 3.9.x before 3.9.3, and 4.x before 4.0.1 might allow remote attackers to obtain a... 6.8 - MEDIUM 2014-11-25 2016-06-30
CVE-2014-8764 DokuWiki 2014-05-05a and earlier, when using Active Directory for LDAP authentication, allows remote attackers to bypass auth... 5 - MEDIUM 2014-10-22 2016-07-15
CVE-2014-8763 DokuWiki before 2014-05-05b, when using Active Directory for LDAP authentication, allows remote attackers to bypass authentic... 5 - MEDIUM 2014-10-22 2016-07-15
CVE-2014-7824 D-Bus 1.3.0 through 1.6.x before 1.6.26, 1.8.x before 1.8.10, and 1.9.x before 1.9.2 allows local users to cause a denial of ... 2.1 - LOW 2014-11-18 2023-12-27
CVE-2014-4668 The cherokee_validator_ldap_check function in validator_ldap.c in Cherokee 1.2.103 and earlier, when LDAP is used, does not p... 6.8 - MEDIUM 2014-07-02 2017-01-03
CVE-2014-3533 dbus 1.3.0 before 1.6.22 and 1.8.x before 1.8.6 allows local users to cause a denial of service (disconnect) via a certain se... 2.1 - LOW 2014-07-19 2023-12-27
CVE-2014-3424 lisp/net/tramp-sh.el in GNU Emacs 24.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on a ... 3.3 - LOW 2014-05-08 2016-06-30
CVE-2014-3423 lisp/net/browse-url.el in GNU Emacs 24.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on ... 3.3 - LOW 2014-05-08 2016-06-30
CVE-2014-3422 lisp/emacs-lisp/find-gc.el in GNU Emacs 24.3 and earlier allows local users to overwrite arbitrary files via a symlink attack... 3.3 - LOW 2014-05-08 2016-06-30
CVE-2014-3421 lisp/gnus/gnus-fun.el in GNU Emacs 24.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on t... 3.3 - LOW 2014-05-08 2016-06-30