2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-8217 | — | — | 2.4% | Nov 17, 2015 | The ff_hevc_parse_sps function in libavcodec/hevc_ps.c in FFmpeg before 2.8.2 does not validate the Chroma Format Indica... |
| CVE-2015-8216 | — | — | 2.4% | Nov 17, 2015 | The ljpeg_decode_yuv_scan function in libavcodec/mjpegdec.c in FFmpeg before 2.8.2 omits certain width and height checks... |
| CVE-2015-8215 | — | — | 3.7% | Nov 16, 2015 | net/ipv6/addrconf.c in the IPv6 stack in the Linux kernel before 4.0 does not validate attempted changes to the MTU valu... |
| CVE-2015-2924 | — | — | 1.2% | Nov 16, 2015 | The receive_ra function in rdisc/nm-lndp-rdisc.c in the Neighbor Discovery (ND) protocol implementation in the IPv6 stac... |
| CVE-2015-7897 | — | — | 7.0% | Nov 16, 2015 | The media scanning functionality in the face recognition library in android.media.process in Samsung Galaxy S6 Edge befo... |
| CVE-2015-7816 | — | — | 3.9% | Nov 16, 2015 | The DisplayTopKeywords function in plugins/Referrers/Controller.php in Piwik before 2.15.0 allows remote attackers to co... |
| CVE-2015-7815 | — | — | 3.0% | Nov 16, 2015 | Directory traversal vulnerability in core/ViewDataTable/Factory.php in Piwik before 2.15.0 allows remote attackers to in... |
| CVE-2015-7712 | — | — | 2.1% | Nov 16, 2015 | Multiple eval injection vulnerabilities in mods/_standard/gradebook/edit_marks.php in ATutor 2.2 and earlier allow remot... |
| CVE-2015-8104 | CRITICAL | 10 | 2.5% | Nov 16, 2015 | The KVM subsystem in the Linux kernel through 4.2.6, and Xen 4.3.x through 4.6.x, allows guest OS users to cause a denia... |
| CVE-2015-7872 | — | — | 0.5% | Nov 16, 2015 | The key_gc_unused_keys function in security/keys/gc.c in the Linux kernel through 4.2.6 allows local users to cause a de... |
| CVE-2015-7312 | — | — | 0.4% | Nov 16, 2015 | Multiple race conditions in the Advanced Union Filesystem (aufs) aufs3-mmap.patch and aufs4-mmap.patch patches for the L... |
| CVE-2015-5307 | — | — | 0.6% | Nov 16, 2015 | The KVM subsystem in the Linux kernel through 4.2.6, and Xen 4.3.x through 4.6.x, allows guest OS users to cause a denia... |
| CVE-2015-5257 | — | — | 0.4% | Nov 16, 2015 | drivers/usb/serial/whiteheat.c in the Linux kernel before 4.2.4 allows physically proximate attackers to cause a denial ... |
| CVE-2015-2925 | — | — | 1.2% | Nov 16, 2015 | The prepend_path function in fs/dcache.c in the Linux kernel before 4.2.4 does not properly handle rename actions inside... |
| CVE-2015-7830 | — | — | 3.0% | Nov 15, 2015 | The pcapng_read_if_descr_block function in wiretap/pcapng.c in the pcapng parser in Wireshark 1.12.x before 1.12.8 uses ... |
| CVE-2015-3977 | — | — | 1.1% | Nov 15, 2015 | Buffer overflow in Schneider Electric IMT25 Magnetic Flow DTM before 1.500.004 for the HART Protocol allows remote authe... |
| CVE-2015-7774 | — | — | 1.3% | Nov 14, 2015 | PC-EGG pWebManager before 3.3.10, and before 2.2.2 for PHP 4.x, allows remote authenticated users to execute arbitrary O... |
| CVE-2015-7427 | — | — | 1.2% | Nov 14, 2015 | IBM DataPower Gateway appliances with firmware 6.x before 6.0.0.17, 6.0.1.x before 6.0.1.17, 7.x before 7.0.0.10, 7.1.0.... |
| CVE-2015-7419 | — | — | 3.2% | Nov 14, 2015 | IBM WebSphere Portal 8.0.0.1 before CF19 and 8.5.0 before CF09 allows remote attackers to cause a denial of service (mem... |
| CVE-2015-7404 | — | — | 0.4% | Nov 14, 2015 | IBM Tivoli Storage Manager for Databases: Data Protection for Microsoft SQL Server (aka Spectrum Protect for Databases) ... |
| CVE-2015-6367 | — | — | 1.9% | Nov 14, 2015 | Cisco Aironet 1800 devices with software 8.1(131.0) allow remote attackers to cause a denial of service (CPU consumption... |
| CVE-2015-6365 | — | — | 1.4% | Nov 14, 2015 | Cisco IOS 15.2(04)M and 15.4(03)M lets physical-interface ACLs supersede virtual PPP interface ACLs, which allows remote... |
| CVE-2015-6364 | — | — | 1.8% | Nov 14, 2015 | Cisco Content Delivery System Manager Software 3.2 on Videoscape Distribution Suite Service Manager allows remote attack... |
| CVE-2015-8126 | — | — | 10.3% | Nov 13, 2015 | Multiple buffer overflows in the (1) png_set_PLTE and (2) png_get_PLTE functions in libpng before 1.0.64, 1.1.x and 1.2.... |
| CVE-2015-7905 | — | — | 4.7% | Nov 13, 2015 | Unitronics VisiLogic OPLC IDE before 9.8.02 allows remote attackers to execute unspecified code via unknown vectors. |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now