2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-9763 | — | — | 2.7% | May 13, 2016 | imlib2 before 1.4.7 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) vi... |
| CVE-2014-9762 | — | — | 2.7% | May 13, 2016 | imlib2 before 1.4.7 allows remote attackers to cause a denial of service (segmentation fault) via a GIF image without a ... |
| CVE-2014-9742 | — | — | 1.4% | May 13, 2016 | The Miller-Rabin primality check in Botan before 1.10.8 and 1.11.x before 1.11.9 improperly uses a single random base, w... |
| CVE-2014-9717 | — | — | 0.3% | May 2, 2016 | fs/namespace.c in the Linux kernel before 4.0.2 processes MNT_DETACH umount2 system calls without verifying that the MNT... |
| CVE-2014-8486 | — | — | — | Apr 29, 2016 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-8496. Reason: This candidate is a duplicate of... |
| CVE-2014-9770 | — | — | 0.4% | Apr 20, 2016 | tmpfiles.d/systemd.conf in systemd before 214 uses weak permissions for journal files under (1) /run/log/journal/%m and ... |
| CVE-2014-9765 | — | — | 4.2% | Apr 19, 2016 | Buffer overflow in the main_get_appheader function in xdelta3-main.h in xdelta3 before 3.0.9 allows remote attackers to ... |
| CVE-2014-9761 | — | — | 5.5% | Apr 19, 2016 | Multiple stack-based buffer overflows in the GNU C Library (aka glibc or libc6) before 2.23 allow context-dependent atta... |
| CVE-2014-9655 | — | — | 2.6% | Apr 13, 2016 | The (1) putcontig8bitYCbCr21tile function in tif_getimage.c or (2) NeXTDecode function in tif_next.c in LibTIFF allows r... |
| CVE-2014-9766 | — | — | 5.6% | Apr 13, 2016 | Integer overflow in the create_bits function in pixman-bits-image.c in Pixman before 0.32.6 allows remote attackers to c... |
| CVE-2014-6276 | — | — | 1.5% | Apr 13, 2016 | schema.py in Roundup before 1.5.1 does not properly limit attributes included in default user permissions, which might a... |
| CVE-2014-9759 | — | — | 1.9% | Apr 11, 2016 | Incomplete blacklist vulnerability in the config_is_private function in config_api.php in MantisBT 1.3.x before 1.3.0 al... |
| CVE-2014-9769 | — | — | 2.4% | Mar 28, 2016 | pcre_jit_compile.c in PCRE 8.35 does not properly use table jumps to optimize nested alternatives, which allows remote a... |
| CVE-2014-9768 | — | — | 1.9% | Mar 18, 2016 | IBM Tivoli NetView Access Services (NVAS) allows remote authenticated users to gain privileges by entering the ADM comma... |
| CVE-2014-0292 | — | — | — | Feb 23, 2016 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2014-9757 | — | — | 2.3% | Feb 8, 2016 | The Ignite Realtime Smack XMPP API, as used in Atlassian Bamboo before 5.9.9 and 5.10.x before 5.10.0, allows remote con... |
| CVE-2014-7151 | — | — | 1.2% | Jan 8, 2016 | Multiple cross-site scripting (XSS) vulnerabilities in the NEX-Forms Lite plugin 2.1.0 for WordPress allow remote attack... |
| CVE-2014-6444 | — | — | 1.2% | Jan 8, 2016 | Multiple cross-site scripting (XSS) vulnerabilities in the Titan Framework plugin before 1.6 for WordPress allow remote ... |
| CVE-2014-8886 | — | — | 6.1% | Jan 8, 2016 | AVM FRITZ!OS before 6.30 extracts the contents of firmware updates before verifying their cryptographic signature, which... |
| CVE-2014-5040 | — | — | 0.6% | Jan 5, 2016 | HP Helion Eucalyptus 4.1.x before 4.1.2 and HPE Helion Eucalyptus 4.2.x before 4.2.1 allow remote authenticated users to... |
| CVE-2014-4876 | — | — | 1.7% | Dec 31, 2015 | Toshiba 4690 Operating System 6 Release 3, when the ADXSITCF logical name is not properly restricted, allows remote atta... |
| CVE-2014-3260 | — | — | 1.2% | Dec 31, 2015 | Pacom 1000 CCU and RTU GMS devices allow remote attackers to spoof the controller-to-base data stream by leveraging impr... |
| CVE-2014-3665 | — | — | 2.5% | Nov 25, 2015 | Jenkins before 1.587 and LTS before 1.580.1 do not properly ensure trust separation between a master and slaves, which m... |
| CVE-2014-9756 | — | — | 2.9% | Nov 19, 2015 | The psf_fwrite function in file_io.c in libsndfile allows attackers to cause a denial of service (divide-by-zero error a... |
| CVE-2014-9752 | — | — | 2.1% | Nov 16, 2015 | Unrestricted file upload vulnerability in mods/_core/properties/lib/course.inc.php in ATutor before 2.2 patch 6 allows r... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now