Known Vulnerabilities for products from Opensuse Project

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Opensuse Project".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2017-17806 json The HMAC implementation (crypto/hmac.c) in the Linux kernel before 4.14.8 does not validate that the underlying cryptographic... 7.8 - HIGH 2017-12-20 2023-01-19
CVE-2017-17805 json The Salsa20 encryption algorithm in the Linux kernel before 4.14.8 does not correctly handle zero-length inputs, allowing a l... 7.8 - HIGH 2017-12-20 2023-01-19
CVE-2017-6594 json The transit path validation code in Heimdal before 7.3 might allow attackers to bypass the capath policy protection mechanism... 7.5 - HIGH 2017-08-28 2021-08-12
CVE-2017-6542 json The ssh_agent_channel_data function in PuTTY before 0.68 allows remote attackers to have unspecified impact via a large lengt... 9.8 - CRITICAL 2017-03-27 2023-11-07
CVE-2017-5938 json Cross-site scripting (XSS) vulnerability in the nav_path function in lib/viewvc.py in ViewVC before 1.0.14 and 1.1.x before 1... 6.1 - MEDIUM 2017-03-15 2018-10-30
CVE-2016-10069 json coders/mat.c in ImageMagick before 6.9.4-5 allows remote attackers to cause a denial of service (application crash) via a mat... 5.5 - MEDIUM 2017-03-02 2017-03-07
CVE-2016-10068 json The MSL interpreter in ImageMagick before 6.9.6-4 allows remote attackers to cause a denial of service (segmentation fault an... 5.5 - MEDIUM 2017-03-02 2018-10-30
CVE-2016-10048 json Directory traversal vulnerability in magick/module.c in ImageMagick 6.9.4-7 allows remote attackers to load arbitrary modules... 7.5 - HIGH 2017-03-23 2017-03-24
CVE-2016-9961 json game-music-emu before 0.6.1 mishandles unspecified integer values. 9.8 - CRITICAL 2017-06-06 2023-11-07
CVE-2016-9960 json game-music-emu before 0.6.1 allows local users to cause a denial of service (divide by zero and process crash). 5.5 - MEDIUM 2017-06-06 2023-11-07
CVE-2016-9959 json game-music-emu before 0.6.1 allows remote attackers to generate out of bounds 8-bit values. 7.8 - HIGH 2017-04-12 2023-11-07
CVE-2016-9958 json game-music-emu before 0.6.1 allows remote attackers to write to arbitrary memory locations. 7.8 - HIGH 2017-04-12 2023-11-07
CVE-2016-9957 json Stack-based buffer overflow in game-music-emu before 0.6.1. 7.8 - HIGH 2017-04-12 2023-11-07
CVE-2016-9556 json The IsPixelGray function in MagickCore/pixel-accessor.h in ImageMagick 7.0.3-8 allows remote attackers to cause a denial of s... 5.5 - MEDIUM 2017-03-23 2017-03-24
CVE-2016-9436 json parsetagx.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote attackers to crash the a... 6.5 - MEDIUM 2017-01-20 2023-12-29
CVE-2016-9435 json The HTMLtagproc1 function in file.c in w3m before 0.5.3+git20161009 does not properly initialize values, which allows remote ... 6.5 - MEDIUM 2017-01-20 2023-12-29
CVE-2016-8866 json The AcquireMagickMemory function in MagickCore/memory.c in ImageMagick 7.0.3.3 before 7.0.3.8 allows remote attackers to have... 8.8 - HIGH 2017-02-15 2021-04-28
CVE-2016-7797 json Pacemaker before 1.1.15, when using pacemaker remote, might allow remote attackers to cause a denial of service (node disconn... 7.5 - HIGH 2017-03-24 2018-10-30
CVE-2016-5317 json Buffer overflow in the PixarLogDecode function in libtiff.so in the PixarLogDecode function in libtiff 4.0.6 and earlier, as ... 6.5 - MEDIUM 2017-01-20 2018-10-30
CVE-2016-5316 json Out-of-bounds read in the PixarLogCleanup function in tif_pixarlog.c in libtiff 4.0.6 and earlier allows remote attackers to ... 6.5 - MEDIUM 2017-01-20 2018-10-30

Known software with vulnerabilities from Opensuse Project

Type Vendor Product Version
Operating
System
Opensuse ProjectLeap42.2
Operating
System
Opensuse ProjectOpensuse11.3
Operating
System
Opensuse ProjectSuse Linux Enterprise Desktop11.0
Operating
System
Opensuse ProjectSuse Linux Enterprise Server11.0
Operating
System
Opensuse ProjectSuse Linux Enterprise Software Development Kit11.0