2014 CVE Vulnerabilities
9,002 CVEs published in 2014.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2014-8095 | — | — | 4.4% | Dec 10, 2014 | The XInput extension in X.Org X Window System (aka X11 or X) X11R4 and X.Org Server (aka xserver and xorg-server) before... |
| CVE-2014-8094 | — | — | 4.3% | Dec 10, 2014 | Integer overflow in the ProcDRI2GetBuffers function in the DRI2 extension in X.Org Server (aka xserver and xorg-server) ... |
| CVE-2014-8093 | — | — | 4.4% | Dec 10, 2014 | Multiple integer overflows in the GLX extension in XFree86 4.0, X.Org X Window System (aka X11 or X) X11R6.7, and X.Org ... |
| CVE-2014-8092 | — | — | 4.4% | Dec 10, 2014 | Multiple integer overflows in X.Org X Window System (aka X11 or X) X11R1 and X.Org Server (aka xserver and xorg-server) ... |
| CVE-2014-8091 | — | — | 4.2% | Dec 10, 2014 | X.Org X Window System (aka X11 and X) X11R5 and X.Org Server (aka xserver and xorg-server) before 1.16.3, when using SUN... |
| CVE-2014-7809 | — | — | 3.5% | Dec 10, 2014 | Apache Struts 2.0.0 through 2.3.x before 2.3.20 uses predictable <s:token/> values, which allows remote attackers to byp... |
| CVE-2014-7807 | — | — | 2.6% | Dec 10, 2014 | Apache CloudStack 4.3.x before 4.3.2 and 4.4.x before 4.4.2 allows remote attackers to bypass authentication via a login... |
| CVE-2014-8488 | — | — | 1.9% | Dec 10, 2014 | Cross-site scripting (XSS) vulnerability in the administrator panel in Yourls 1.7 allows remote attackers to inject arbi... |
| CVE-2014-8730 | — | — | 13.7% | Dec 10, 2014 | The SSL profiles component in F5 BIG-IP LTM, APM, and ASM 10.0.0 through 10.2.4 and 11.0.0 through 11.5.1, AAM 11.4.0 th... |
| CVE-2014-8496 | — | — | 2.4% | Dec 10, 2014 | Digicom DG-5514T ADSL router with firmware 3.2 generates predictable session IDs, which allows remote attackers to gain ... |
| CVE-2014-9352 | — | — | 1.1% | Dec 9, 2014 | Cross-site scripting (XSS) vulnerability in the mail administration login panel in Scalix Web Access 11.4.6.12377 allows... |
| CVE-2014-9351 | — | — | 2.7% | Dec 9, 2014 | engine/server/server.cpp in Teeworlds 0.6.x before 0.6.3 allows remote attackers to read memory and cause a denial of se... |
| CVE-2014-9319 | — | — | 2.4% | Dec 9, 2014 | The ff_hevc_decode_nal_sps function in libavcodec/hevc_ps.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x befor... |
| CVE-2014-9318 | — | — | 2.2% | Dec 9, 2014 | The raw_decode function in libavcodec/rawdec.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.4 allow... |
| CVE-2014-9317 | — | — | 2.4% | Dec 9, 2014 | The decode_ihdr_chunk function in libavcodec/pngdec.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4.... |
| CVE-2014-9316 | — | — | 1.6% | Dec 9, 2014 | The mjpeg_decode_app function in libavcodec/mjpegdec.c in FFMpeg before 2.1.6, 2.2.x through 2.3.x, and 2.4.x before 2.4... |
| CVE-2014-9281 | — | — | 2.4% | Dec 9, 2014 | Cross-site scripting (XSS) vulnerability in admin/copy_field.php in MantisBT before 1.2.18 allows remote attackers to in... |
| CVE-2014-9275 | — | — | 4.7% | Dec 9, 2014 | UnRTF allows remote attackers to cause a denial of service (out-of-bounds memory access and crash) and possibly execute ... |
| CVE-2014-9274 | — | — | 5.8% | Dec 9, 2014 | UnRTF allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code as demonstrated b... |
| CVE-2014-9066 | — | — | 0.4% | Dec 9, 2014 | Xen 4.4.x and earlier, when using a large number of VCPUs, does not properly handle read and write locks, which allows l... |
| CVE-2014-9065 | — | — | 0.4% | Dec 9, 2014 | common/spinlock.c in Xen 4.4.x and earlier does not properly handle read and write locks, which allows local x86 guest u... |
| CVE-2014-8737 | — | — | 1.0% | Dec 9, 2014 | Multiple directory traversal vulnerabilities in GNU binutils 2.24 and earlier allow local users to delete arbitrary file... |
| CVE-2014-8504 | — | — | 6.2% | Dec 9, 2014 | Stack-based buffer overflow in the srec_scan function in bfd/srec.c in GNU binutils 2.24 and earlier allows remote attac... |
| CVE-2014-8503 | — | — | 6.2% | Dec 9, 2014 | Stack-based buffer overflow in the ihex_scan function in bfd/ihex.c in GNU binutils 2.24 and earlier allows remote attac... |
| CVE-2014-8502 | — | — | 4.9% | Dec 9, 2014 | Heap-based buffer overflow in the pe_print_edata function in bfd/peXXigen.c in GNU binutils 2.24 and earlier allows remo... |
Check if your code is affected by 2014 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now