A vulnerability was found in Horde Groupware up to 5.1.0. It has been rated as critical. This impacts an unknown function in the library framework/util/lib/horde/variables.php of the component Util Library. The manipulation of the argument _formvars leads to code injection.
This vulnerability is documented as CVE-2014-1691. The attack can be initiated remotely. Additionally, an exploit exists.
Upgrading the affected component is advised.
A vulnerability described as problematic has been identified in Linux Foundation libvchan 4.2/4.3.0. This affects an unknown part of the component XenStore Ring Index Handler. The manipulation results in improper input validation.
This vulnerability is cataloged as CVE-2014-1896. The attack must be initiated from a local position. There is no exploit available.
Upgrading the affected component is recommended.
A vulnerability classified as problematic has been found in Xen Security 4.2. This vulnerability affects the function FLASK_AVC_CACHESTAT of the component Hypercall Handler. This manipulation causes numeric error.
This vulnerability is registered as CVE-2014-1895. The attack needs to be launched locally. No exploit is available.
To fix this issue, it is recommended to deploy a patch.
A vulnerability identified as problematic has been detected in Linux Foundation Xen. Impacted is an unknown function. The manipulation leads to numeric error.
This vulnerability is listed as CVE-2014-1891. The attack must be carried out locally. There is no available exploit.
Applying a patch is the recommended action to fix this issue.
A vulnerability labeled as problematic has been found in Linux Foundation Xen. The affected element is an unknown function of the component Memory Allocation Handler. The manipulation results in memory corruption.
This vulnerability is cataloged as CVE-2014-1892. The attack must be initiated from a local position. There is no exploit available.
It is best practice to apply a patch to resolve this issue.
A vulnerability marked as problematic has been reported in Linux Foundation Xen. The impacted element is the function FLASK_GETBOOL/FLASK_SETBOOL of the component Flask Hypercall. This manipulation causes numeric error.
This vulnerability is registered as CVE-2014-1893. The attack needs to be launched locally. No exploit is available.
It is recommended to apply a patch to fix this issue.
A vulnerability described as problematic has been identified in Linux Foundation Xen up to 3.2.3. This affects the function FLASK_GETBOOL/FLASK_SETBOOL/FLASK_USER/FLASK_CONTEXT_TO_SID of the component Flask Hypercall. Such manipulation leads to numeric error.
This vulnerability is documented as CVE-2014-1894. The attack needs to be performed locally. There is not any exploit available.
Applying a patch is advised to resolve this issue.
A vulnerability classified as problematic was found in Linux Kernel 3.12.14/3.13.6. Affected is the function ath_tx_aggr_sleep of the file drivers/net/wireless/ath/ath9k/xmit.c. The manipulation results in race condition.
This vulnerability is identified as CVE-2014-2672. The attack is only possible with local access. There is not any exploit available.
It is best practice to apply a patch to resolve this issue.
A vulnerability classified as problematic has been found in Linux Kernel 3.12.14/3.13.6 on PowerPC. This impacts the function arch_dup_task_struct of the file arch/powerpc/kernel/process.c. The manipulation leads to improper input validation.
This vulnerability is referenced as CVE-2014-2673. The attack can only be performed from a local environment. No exploit is available.
Applying a patch is the recommended action to fix this issue.
A vulnerability was found in Linux Kernel up to 3.3.5. It has been classified as problematic. This issue affects the function rds_iw_laddr_check. The manipulation leads to null pointer dereference.
This vulnerability is documented as CVE-2014-2678. The attack needs to be performed locally. There is not any exploit available.
To fix this issue, it is recommended to deploy a patch.
A vulnerability was found in OpenStack Keystone up to 2013.2.2. It has been declared as critical. The affected element is an unknown function of the component Access Restriction. Such manipulation leads to improper access controls.
This vulnerability is uniquely identified as CVE-2014-2237. The attack can be launched remotely. No exploit exists.
A vulnerability was found in POSH. It has been rated as problematic. The impacted element is an unknown function. Performing a manipulation results in credentials management.
This vulnerability was named CVE-2014-2212. The attack may be initiated remotely. There is no available exploit.
A vulnerability labeled as problematic has been found in Red Hat JBoss 3.0. This affects an unknown part of the component Operations Network Client. Such manipulation leads to improper access controls.
This vulnerability is uniquely identified as CVE-2012-0032. Local access is required to approach this attack. Moreover, an exploit is present.
Applying a patch is advised to resolve this issue.
A vulnerability was found in Linux Kernel and classified as problematic. This vulnerability affects the function ioctx_alloc. Executing a manipulation can lead to improper resource management.
This vulnerability is registered as CVE-2013-7348. The attack needs to be launched locally. Furthermore, an exploit is available.
A patch should be applied to remediate this issue.
A vulnerability marked as critical has been reported in EMC VPLEX GeoSynchrony. This affects an unknown function. The manipulation leads to path traversal.
This vulnerability is listed as CVE-2014-0632. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.
A vulnerability described as critical has been identified in EMC VPLEX GeoSynchrony. This impacts an unknown function. The manipulation results in improper input validation.
This vulnerability is cataloged as CVE-2014-0633. The attack must originate from the local network. There is no exploit available.
Upgrading the affected component is recommended.
A vulnerability classified as problematic has been found in EMC VPLEX GeoSynchrony. Affected is an unknown function. This manipulation causes improper input validation.
This vulnerability is registered as CVE-2014-0634. Remote exploitation of the attack is possible. No exploit is available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic was found in EMC VPLEX GeoSynchrony. Affected by this vulnerability is an unknown functionality. Such manipulation leads to improper authentication.
This vulnerability is documented as CVE-2014-0635. The attack can be executed remotely. There is not any exploit available.
Upgrading the affected component is advised.