2015 CVE Vulnerabilities
8,779 CVEs published in 2015.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2015-6550 | — | — | 2.8% | May 7, 2016 | bpcd in Veritas NetBackup 7.x through 7.5.0.7, 7.6.0.x through 7.6.0.4, 7.6.1.x through 7.6.1.2, and 7.7.x before 7.7.2 ... |
| CVE-2015-8868 | — | — | 4.6% | May 6, 2016 | Heap-based buffer overflow in the ExponentialFunction::ExponentialFunction function in Poppler before 0.40.0 allows remo... |
| CVE-2015-8863 | — | — | 7.5% | May 6, 2016 | Off-by-one error in the tokenadd function in jv_parse.c in jq allows remote attackers to cause a denial of service (cras... |
| CVE-2015-0858 | — | — | 0.4% | May 6, 2016 | Cool Projects TarDiff allows local users to write to arbitrary files via a symlink attack on a pathname in a /tmp/tardif... |
| CVE-2015-0857 | — | — | 5.3% | May 6, 2016 | Cool Projects TarDiff allows remote attackers to execute arbitrary commands via shell metacharacters in the name of a (1... |
| CVE-2015-8830 | — | — | 0.5% | May 2, 2016 | Integer overflow in the aio_setup_single_vector function in fs/aio.c in the Linux kernel 4.0 allows local users to cause... |
| CVE-2015-8746 | — | — | 3.0% | May 2, 2016 | fs/nfs/nfs4proc.c in the NFS client in the Linux kernel before 4.2.2 does not properly initialize memory for migration r... |
| CVE-2015-8324 | — | — | 0.4% | May 2, 2016 | The ext4 implementation in the Linux kernel before 2.6.34 does not properly track the initialization of certain data str... |
| CVE-2015-8019 | — | — | 0.4% | May 2, 2016 | The skb_copy_and_csum_datagram_iovec function in net/core/datagram.c in the Linux kernel 3.14.54 and 3.18.22 does not ac... |
| CVE-2015-4178 | — | — | 0.4% | May 2, 2016 | The fs_pin implementation in the Linux kernel before 4.0.5 does not ensure the internal consistency of a certain list da... |
| CVE-2015-4177 | — | — | 0.4% | May 2, 2016 | The collect_mounts function in fs/namespace.c in the Linux kernel before 4.0.5 does not properly consider that it may ex... |
| CVE-2015-4176 | — | — | 0.4% | May 2, 2016 | fs/namespace.c in the Linux kernel before 4.0.2 does not properly support mount connectivity, which allows local users t... |
| CVE-2015-4170 | — | — | 0.3% | May 2, 2016 | Race condition in the ldsem_cmpxchg function in drivers/tty/tty_ldsem.c in the Linux kernel before 3.13-rc4-next-2013121... |
| CVE-2015-2686 | — | — | 0.4% | May 2, 2016 | net/socket.c in the Linux kernel 3.19 before 3.19.3 does not validate certain range data for (1) sendto and (2) recvfrom... |
| CVE-2015-2672 | — | — | 0.4% | May 2, 2016 | The xsave/xrstor implementation in arch/x86/include/asm/xsave.h in the Linux kernel before 3.19.2 creates certain .altin... |
| CVE-2015-1573 | — | — | 0.4% | May 2, 2016 | The nft_flush_table function in net/netfilter/nf_tables_api.c in the Linux kernel before 3.18.5 mishandles the interacti... |
| CVE-2015-8845 | — | — | 0.4% | Apr 27, 2016 | The tm_reclaim_thread function in arch/powerpc/kernel/process.c in the Linux kernel before 4.4.1 on powerpc platforms do... |
| CVE-2015-8844 | — | — | 0.4% | Apr 27, 2016 | The signal implementation in the Linux kernel before 4.3.5 on powerpc platforms does not check for an MSR with both the ... |
| CVE-2015-1339 | — | — | 0.4% | Apr 27, 2016 | Memory leak in the cuse_channel_release function in fs/fuse/cuse.c in the Linux kernel before 4.4 allows local users to ... |
| CVE-2015-3572 | — | — | — | Apr 26, 2016 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-3572. Reason: This candidate is a duplicate of... |
| CVE-2015-3571 | — | — | — | Apr 26, 2016 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-3571. Reason: This candidate is a duplicate of... |
| CVE-2015-3569 | — | — | — | Apr 26, 2016 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2014-3569. Reason: This candidate is a duplicate of... |
| CVE-2015-8852 | — | — | 3.4% | Apr 25, 2016 | Varnish 3.x before 3.0.7, when used in certain stacked installations, allows remote attackers to inject arbitrary HTTP h... |
| CVE-2015-5370 | — | — | 19.2% | Apr 25, 2016 | Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 does not properly implement the DCE-RPC laye... |
| CVE-2015-4829 | — | — | — | Apr 22, 2016 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2016-0638. Reason: This candidate is a reservation ... |
Check if your code is affected by 2015 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now