Known Vulnerabilities for products from Opensuse Project

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Opensuse Project".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2017-17806 The HMAC implementation (crypto/hmac.c) in the Linux kernel before 4.14.8 does not validate that the underlying cryptographic... 7.8 - HIGH 2017-12-20 2023-01-19
CVE-2017-17805 The Salsa20 encryption algorithm in the Linux kernel before 4.14.8 does not correctly handle zero-length inputs, allowing a l... 7.8 - HIGH 2017-12-20 2023-01-19
CVE-2017-6594 The transit path validation code in Heimdal before 7.3 might allow attackers to bypass the capath policy protection mechanism... 7.5 - HIGH 2017-08-28 2021-08-12
CVE-2017-6542 The ssh_agent_channel_data function in PuTTY before 0.68 allows remote attackers to have unspecified impact via a large lengt... 9.8 - CRITICAL 2017-03-27 2023-11-07
CVE-2017-5938 Cross-site scripting (XSS) vulnerability in the nav_path function in lib/viewvc.py in ViewVC before 1.0.14 and 1.1.x before 1... 6.1 - MEDIUM 2017-03-15 2018-10-30
CVE-2016-10069 coders/mat.c in ImageMagick before 6.9.4-5 allows remote attackers to cause a denial of service (application crash) via a mat... 5.5 - MEDIUM 2017-03-02 2017-03-07
CVE-2016-10068 The MSL interpreter in ImageMagick before 6.9.6-4 allows remote attackers to cause a denial of service (segmentation fault an... 5.5 - MEDIUM 2017-03-02 2018-10-30
CVE-2016-10048 Directory traversal vulnerability in magick/module.c in ImageMagick 6.9.4-7 allows remote attackers to load arbitrary modules... 7.5 - HIGH 2017-03-23 2017-03-24
CVE-2016-9961 game-music-emu before 0.6.1 mishandles unspecified integer values. 9.8 - CRITICAL 2017-06-06 2023-11-07
CVE-2016-9960 game-music-emu before 0.6.1 allows local users to cause a denial of service (divide by zero and process crash). 5.5 - MEDIUM 2017-06-06 2023-11-07
CVE-2016-9959 game-music-emu before 0.6.1 allows remote attackers to generate out of bounds 8-bit values. 7.8 - HIGH 2017-04-12 2023-11-07
CVE-2016-9958 game-music-emu before 0.6.1 allows remote attackers to write to arbitrary memory locations. 7.8 - HIGH 2017-04-12 2023-11-07
CVE-2016-9957 Stack-based buffer overflow in game-music-emu before 0.6.1. 7.8 - HIGH 2017-04-12 2023-11-07
CVE-2016-9556 The IsPixelGray function in MagickCore/pixel-accessor.h in ImageMagick 7.0.3-8 allows remote attackers to cause a denial of s... 5.5 - MEDIUM 2017-03-23 2017-03-24
CVE-2016-9436 parsetagx.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the a... 6.5 - MEDIUM 2017-01-20 2023-12-29
CVE-2016-9435 The HTMLtagproc1 function in file.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote ... 6.5 - MEDIUM 2017-01-20 2023-12-29
CVE-2016-8866 The AcquireMagickMemory function in MagickCore/memory.c in ImageMagick 7.0.3.3 before 7.0.3.8 allows remote attackers to have... 8.8 - HIGH 2017-02-15 2021-04-28
CVE-2016-7797 Pacemaker before 1.1.15, when using pacemaker remote, might allow remote attackers to cause a denial of service (node disconn... 7.5 - HIGH 2017-03-24 2018-10-30
CVE-2016-5317 Buffer overflow in the PixarLogDecode function in libtiff.so in the PixarLogDecode function in libtiff 4.0.6 and earlier, as ... 6.5 - MEDIUM 2017-01-20 2018-10-30
CVE-2016-5316 Out-of-bounds read in the PixarLogCleanup function in tif_pixarlog.c in libtiff 4.0.6 and earlier allows remote attackers to ... 6.5 - MEDIUM 2017-01-20 2018-10-30

Known software with vulnerabilities from Opensuse Project

Type Vendor Product Version
Operating
System
Opensuse ProjectLeap42.2
Operating
System
Opensuse ProjectOpensuse11.3
Operating
System
Opensuse ProjectSuse Linux Enterprise Desktop11.0
Operating
System
Opensuse ProjectSuse Linux Enterprise Server11.0
Operating
System
Opensuse ProjectSuse Linux Enterprise Software Development Kit11.0