Action not permitted
Modal body text goes here.
Modal Title
Modal Body
CVE-2012-2825 (GCVE-0-2012-2825)
Vulnerability from cvelistv5 – Published: 2012-06-27 10:00 – Updated: 2024-08-06 19:42- n/a
| URL | Tags | |||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
||||||||||||||||||||||||||||||||
{
"containers": {
"adp": [
{
"providerMetadata": {
"dateUpdated": "2024-08-06T19:42:32.656Z",
"orgId": "af854a3a-2127-422b-91ae-364da2661108",
"shortName": "CVE"
},
"references": [
{
"tags": [
"x_refsource_CONFIRM",
"x_transferred"
],
"url": "http://code.google.com/p/chromium/issues/detail?id=127417"
},
{
"name": "APPLE-SA-2013-10-22-8",
"tags": [
"vendor-advisory",
"x_refsource_APPLE",
"x_transferred"
],
"url": "http://lists.apple.com/archives/security-announce/2013/Oct/msg00009.html"
},
{
"name": "openSUSE-SU-2012:0813",
"tags": [
"vendor-advisory",
"x_refsource_SUSE",
"x_transferred"
],
"url": "https://hermes.opensuse.org/messages/15075728"
},
{
"name": "SUSE-SU-2013:1654",
"tags": [
"vendor-advisory",
"x_refsource_SUSE",
"x_transferred"
],
"url": "https://www.suse.com/support/update/announcement/2013/suse-su-20131654-1.html"
},
{
"tags": [
"x_refsource_CONFIRM",
"x_transferred"
],
"url": "http://support.apple.com/kb/HT6001"
},
{
"tags": [
"x_refsource_CONFIRM",
"x_transferred"
],
"url": "http://googlechromereleases.blogspot.com/2012/06/stable-channel-update_26.html"
},
{
"name": "SUSE-SU-2013:1656",
"tags": [
"vendor-advisory",
"x_refsource_SUSE",
"x_transferred"
],
"url": "https://www.suse.com/support/update/announcement/2013/suse-su-20131656-1.html"
},
{
"name": "54886",
"tags": [
"third-party-advisory",
"x_refsource_SECUNIA",
"x_transferred"
],
"url": "http://secunia.com/advisories/54886"
},
{
"tags": [
"x_refsource_CONFIRM",
"x_transferred"
],
"url": "http://support.apple.com/kb/HT5934"
},
{
"name": "APPLE-SA-2013-09-18-2",
"tags": [
"vendor-advisory",
"x_refsource_APPLE",
"x_transferred"
],
"url": "http://lists.apple.com/archives/security-announce/2013/Sep/msg00006.html"
}
],
"title": "CVE Program Container"
}
],
"cna": {
"affected": [
{
"product": "n/a",
"vendor": "n/a",
"versions": [
{
"status": "affected",
"version": "n/a"
}
]
}
],
"datePublic": "2012-06-26T00:00:00.000Z",
"descriptions": [
{
"lang": "en",
"value": "The XSL implementation in Google Chrome before 20.0.1132.43 allows remote attackers to cause a denial of service (incorrect read operation) via unspecified vectors."
}
],
"problemTypes": [
{
"descriptions": [
{
"description": "n/a",
"lang": "en",
"type": "text"
}
]
}
],
"providerMetadata": {
"dateUpdated": "2014-01-23T19:57:01.000Z",
"orgId": "ebfee0ef-53dd-4cf3-9e2a-08a5bd7a7e28",
"shortName": "Chrome"
},
"references": [
{
"tags": [
"x_refsource_CONFIRM"
],
"url": "http://code.google.com/p/chromium/issues/detail?id=127417"
},
{
"name": "APPLE-SA-2013-10-22-8",
"tags": [
"vendor-advisory",
"x_refsource_APPLE"
],
"url": "http://lists.apple.com/archives/security-announce/2013/Oct/msg00009.html"
},
{
"name": "openSUSE-SU-2012:0813",
"tags": [
"vendor-advisory",
"x_refsource_SUSE"
],
"url": "https://hermes.opensuse.org/messages/15075728"
},
{
"name": "SUSE-SU-2013:1654",
"tags": [
"vendor-advisory",
"x_refsource_SUSE"
],
"url": "https://www.suse.com/support/update/announcement/2013/suse-su-20131654-1.html"
},
{
"tags": [
"x_refsource_CONFIRM"
],
"url": "http://support.apple.com/kb/HT6001"
},
{
"tags": [
"x_refsource_CONFIRM"
],
"url": "http://googlechromereleases.blogspot.com/2012/06/stable-channel-update_26.html"
},
{
"name": "SUSE-SU-2013:1656",
"tags": [
"vendor-advisory",
"x_refsource_SUSE"
],
"url": "https://www.suse.com/support/update/announcement/2013/suse-su-20131656-1.html"
},
{
"name": "54886",
"tags": [
"third-party-advisory",
"x_refsource_SECUNIA"
],
"url": "http://secunia.com/advisories/54886"
},
{
"tags": [
"x_refsource_CONFIRM"
],
"url": "http://support.apple.com/kb/HT5934"
},
{
"name": "APPLE-SA-2013-09-18-2",
"tags": [
"vendor-advisory",
"x_refsource_APPLE"
],
"url": "http://lists.apple.com/archives/security-announce/2013/Sep/msg00006.html"
}
],
"x_legacyV4Record": {
"CVE_data_meta": {
"ASSIGNER": "security@google.com",
"ID": "CVE-2012-2825",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "The XSL implementation in Google Chrome before 20.0.1132.43 allows remote attackers to cause a denial of service (incorrect read operation) via unspecified vectors."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"name": "http://code.google.com/p/chromium/issues/detail?id=127417",
"refsource": "CONFIRM",
"url": "http://code.google.com/p/chromium/issues/detail?id=127417"
},
{
"name": "APPLE-SA-2013-10-22-8",
"refsource": "APPLE",
"url": "http://lists.apple.com/archives/security-announce/2013/Oct/msg00009.html"
},
{
"name": "openSUSE-SU-2012:0813",
"refsource": "SUSE",
"url": "https://hermes.opensuse.org/messages/15075728"
},
{
"name": "SUSE-SU-2013:1654",
"refsource": "SUSE",
"url": "https://www.suse.com/support/update/announcement/2013/suse-su-20131654-1.html"
},
{
"name": "http://support.apple.com/kb/HT6001",
"refsource": "CONFIRM",
"url": "http://support.apple.com/kb/HT6001"
},
{
"name": "http://googlechromereleases.blogspot.com/2012/06/stable-channel-update_26.html",
"refsource": "CONFIRM",
"url": "http://googlechromereleases.blogspot.com/2012/06/stable-channel-update_26.html"
},
{
"name": "SUSE-SU-2013:1656",
"refsource": "SUSE",
"url": "https://www.suse.com/support/update/announcement/2013/suse-su-20131656-1.html"
},
{
"name": "54886",
"refsource": "SECUNIA",
"url": "http://secunia.com/advisories/54886"
},
{
"name": "http://support.apple.com/kb/HT5934",
"refsource": "CONFIRM",
"url": "http://support.apple.com/kb/HT5934"
},
{
"name": "APPLE-SA-2013-09-18-2",
"refsource": "APPLE",
"url": "http://lists.apple.com/archives/security-announce/2013/Sep/msg00006.html"
}
]
}
}
}
},
"cveMetadata": {
"assignerOrgId": "ebfee0ef-53dd-4cf3-9e2a-08a5bd7a7e28",
"assignerShortName": "Chrome",
"cveId": "CVE-2012-2825",
"datePublished": "2012-06-27T10:00:00.000Z",
"dateReserved": "2012-05-19T00:00:00.000Z",
"dateUpdated": "2024-08-06T19:42:32.656Z",
"state": "PUBLISHED"
},
"dataType": "CVE_RECORD",
"dataVersion": "5.1"
}
CERTFR-2014-AVI-041
Vulnerability from certfr_avis - Published: 2014-01-24 - Updated: 2014-01-24
De multiples vulnérabilités ont été corrigées dans Apple iTunes. Elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, un déni de service à distance et une atteinte à l'intégrité des données.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
Apple iTunes versions antérieures à 11.1.4
| Vendor | Product | Description |
|---|
| Title | Publication Time | Tags | |||
|---|---|---|---|---|---|
|
|||||
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [],
"affected_systems_content": "\u003cP\u003eApple iTunes versions ant\u00e9rieures \u00e0 11.1.4\u003c/P\u003e",
"content": "## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des\ncorrectifs (cf. section Documentation).\n",
"cves": [
{
"name": "CVE-2012-5134",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-5134"
},
{
"name": "CVE-2013-1045",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1045"
},
{
"name": "CVE-2013-1040",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1040"
},
{
"name": "CVE-2013-1047",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1047"
},
{
"name": "CVE-2012-2871",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2871"
},
{
"name": "CVE-2013-1042",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1042"
},
{
"name": "CVE-2012-2870",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2870"
},
{
"name": "CVE-2013-1043",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1043"
},
{
"name": "CVE-2013-1037",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1037"
},
{
"name": "CVE-2011-3102",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-3102"
},
{
"name": "CVE-2013-1024",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1024"
},
{
"name": "CVE-2013-5125",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5125"
},
{
"name": "CVE-2013-1044",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1044"
},
{
"name": "CVE-2014-1242",
"url": "https://www.cve.org/CVERecord?id=CVE-2014-1242"
},
{
"name": "CVE-2013-5128",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5128"
},
{
"name": "CVE-2013-2842",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-2842"
},
{
"name": "CVE-2013-5126",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5126"
},
{
"name": "CVE-2013-1039",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1039"
},
{
"name": "CVE-2012-0841",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-0841"
},
{
"name": "CVE-2013-1038",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1038"
},
{
"name": "CVE-2013-1046",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1046"
},
{
"name": "CVE-2013-5127",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5127"
},
{
"name": "CVE-2012-2807",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2807"
},
{
"name": "CVE-2013-1041",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1041"
},
{
"name": "CVE-2012-2825",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2825"
}
],
"initial_release_date": "2014-01-24T00:00:00",
"last_revision_date": "2014-01-24T00:00:00",
"links": [],
"reference": "CERTFR-2014-AVI-041",
"revisions": [
{
"description": "version initiale.",
"revision_date": "2014-01-24T00:00:00.000000"
}
],
"risks": [
{
"description": "D\u00e9ni de service \u00e0 distance"
},
{
"description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
},
{
"description": "Atteinte \u00e0 l\u0027int\u00e9grit\u00e9 des donn\u00e9es"
}
],
"summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 corrig\u00e9es dans \u003cspan\nclass=\"textit\"\u003eApple iTunes\u003c/span\u003e. Elles permettent \u00e0 un attaquant de\nprovoquer une ex\u00e9cution de code arbitraire \u00e0 distance, un d\u00e9ni de\nservice \u00e0 distance et une atteinte \u00e0 l\u0027int\u00e9grit\u00e9 des donn\u00e9es.\n",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans Apple iTunes",
"vendor_advisories": [
{
"published_at": null,
"title": "Bulletin de s\u00e9curit\u00e9 Apple HT6001 du 22 janvier 2014",
"url": "http://support.apple.com/kb/HT6001"
}
]
}
CERTA-2013-AVI-088
Vulnerability from certfr_avis - Published: 2013-02-04 - Updated: 2013-02-04
De multiples vulnérabilités ont été corrigées dans VMware vSphere. Plusieurs composants tiers ont été corrigés comme libxml2, bind et xslt. La vulnérabilité la plus critique permet à un attaquant de provoquer une exécution de code arbitraire à distance.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
None| Vendor | Product | Description | ||
|---|---|---|---|---|
| VMware | N/A | VMware ESX versions antérieures à 4.1 mise à jour ESX410-201301401-SG | ||
| VMware | ESXi | VMware ESXi versions antérieures à 4.1 mise à jour ESXi410-201301401-SG | ||
| VMware | vCenter Server | VMware vCenter Server versions antérieures à 4.1 mise à jour 3a | ||
| VMware | N/A | VMware vCenter Client versions antérieures à 4.1 mise à jour 3a |
| Title | Publication Time | Tags | |
|---|---|---|---|
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [
{
"description": "VMware ESX versions ant\u00e9rieures \u00e0 4.1 mise \u00e0 jour ESX410-201301401-SG",
"product": {
"name": "N/A",
"vendor": {
"name": "VMware",
"scada": false
}
}
},
{
"description": "VMware ESXi versions ant\u00e9rieures \u00e0 4.1 mise \u00e0 jour ESXi410-201301401-SG",
"product": {
"name": "ESXi",
"vendor": {
"name": "VMware",
"scada": false
}
}
},
{
"description": "VMware vCenter Server versions ant\u00e9rieures \u00e0 4.1 mise \u00e0 jour 3a",
"product": {
"name": "vCenter Server",
"vendor": {
"name": "VMware",
"scada": false
}
}
},
{
"description": "VMware vCenter Client versions ant\u00e9rieures \u00e0 4.1 mise \u00e0 jour 3a",
"product": {
"name": "N/A",
"vendor": {
"name": "VMware",
"scada": false
}
}
}
],
"affected_systems_content": null,
"content": "## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des\ncorrectifs (cf. section Documentation).\n",
"cves": [
{
"name": "CVE-2012-4244",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-4244"
},
{
"name": "CVE-2011-3970",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-3970"
},
{
"name": "CVE-2012-2871",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2871"
},
{
"name": "CVE-2012-2870",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2870"
},
{
"name": "CVE-2013-1405",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1405"
},
{
"name": "CVE-2011-3102",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-3102"
},
{
"name": "CVE-2012-2807",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2807"
},
{
"name": "CVE-2011-1202",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-1202"
},
{
"name": "CVE-2012-2825",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2825"
}
],
"initial_release_date": "2013-02-04T00:00:00",
"last_revision_date": "2013-02-04T00:00:00",
"links": [
{
"title": "Bulletin de s\u00e9curit\u00e9 VMware VMSA-2013-0001 du 31 janvier 2013",
"url": "http://www.vmware.com/security/advisories/VMSA-2013-0001.html"
}
],
"reference": "CERTA-2013-AVI-088",
"revisions": [
{
"description": "version initiale.",
"revision_date": "2013-02-04T00:00:00.000000"
}
],
"risks": [
{
"description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
}
],
"summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 corrig\u00e9es dans \u003cspan\nclass=\"textit\"\u003eVMware vSphere\u003c/span\u003e. Plusieurs composants tiers ont \u00e9t\u00e9\ncorrig\u00e9s comme \u003cspan class=\"textit\"\u003elibxml2\u003c/span\u003e, \u003cspan\nclass=\"textit\"\u003ebind\u003c/span\u003e et \u003cspan class=\"textit\"\u003exslt\u003c/span\u003e. La\nvuln\u00e9rabilit\u00e9 la plus critique permet \u00e0 un attaquant de provoquer une\nex\u00e9cution de code arbitraire \u00e0 distance.\n",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans VMware vSphere",
"vendor_advisories": [
{
"published_at": null,
"title": "Bulletin de s\u00e9curit\u00e9 VMware VMSA-2013-0001 du 31 janvier 2013",
"url": null
}
]
}
CERTFR-2014-AVI-112
Vulnerability from certfr_avis - Published: 2014-03-10 - Updated: 2014-03-10
De multiples vulnérabilités ont été corrigées dans Oracle Solaris. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une exécution de code arbitraire et un déni de service à distance.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
None| Title | Publication Time | Tags | |||
|---|---|---|---|---|---|
|
|||||
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [
{
"description": "Oracle Solaris 11.1",
"product": {
"name": "N/A",
"vendor": {
"name": "Oracle",
"scada": false
}
}
},
{
"description": "Oracle Solaris 10",
"product": {
"name": "N/A",
"vendor": {
"name": "Oracle",
"scada": false
}
}
},
{
"description": "Oracle Solaris 9",
"product": {
"name": "N/A",
"vendor": {
"name": "Oracle",
"scada": false
}
}
}
],
"affected_systems_content": null,
"content": "## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des\ncorrectifs (cf. section Documentation).\n",
"cves": [
{
"name": "CVE-2013-5718",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5718"
},
{
"name": "CVE-2013-1960",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1960"
},
{
"name": "CVE-2013-4123",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-4123"
},
{
"name": "CVE-2013-5745",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5745"
},
{
"name": "CVE-2013-4231",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-4231"
},
{
"name": "CVE-2006-4810",
"url": "https://www.cve.org/CVERecord?id=CVE-2006-4810"
},
{
"name": "CVE-2013-4164",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-4164"
},
{
"name": "CVE-2012-6139",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-6139"
},
{
"name": "CVE-2013-4408",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-4408"
},
{
"name": "CVE-2014-0397",
"url": "https://www.cve.org/CVERecord?id=CVE-2014-0397"
},
{
"name": "CVE-2013-6462",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-6462"
},
{
"name": "CVE-2013-1418",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1418"
},
{
"name": "CVE-2011-3970",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-3970"
},
{
"name": "CVE-2012-2871",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2871"
},
{
"name": "CVE-2012-6150",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-6150"
},
{
"name": "CVE-2013-5717",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5717"
},
{
"name": "CVE-2013-6340",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-6340"
},
{
"name": "CVE-2012-2870",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2870"
},
{
"name": "CVE-2013-6337",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-6337"
},
{
"name": "CVE-2013-0900",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0900"
},
{
"name": "CVE-2013-6339",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-6339"
},
{
"name": "CVE-2013-4363",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-4363"
},
{
"name": "CVE-2013-5721",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5721"
},
{
"name": "CVE-2007-6750",
"url": "https://www.cve.org/CVERecord?id=CVE-2007-6750"
},
{
"name": "CVE-2008-0386",
"url": "https://www.cve.org/CVERecord?id=CVE-2008-0386"
},
{
"name": "CVE-2012-4504",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-4504"
},
{
"name": "CVE-2012-2893",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2893"
},
{
"name": "CVE-2012-4505",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-4505"
},
{
"name": "CVE-2013-1961",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1961"
},
{
"name": "CVE-2013-4287",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-4287"
},
{
"name": "CVE-2009-0179",
"url": "https://www.cve.org/CVERecord?id=CVE-2009-0179"
},
{
"name": "CVE-2013-6338",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-6338"
},
{
"name": "CVE-2013-6336",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-6336"
},
{
"name": "CVE-2013-4232",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-4232"
},
{
"name": "CVE-2013-4124",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-4124"
},
{
"name": "CVE-2013-7112",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-7112"
},
{
"name": "CVE-2013-2561",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-2561"
},
{
"name": "CVE-2014-0591",
"url": "https://www.cve.org/CVERecord?id=CVE-2014-0591"
},
{
"name": "CVE-2013-5719",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5719"
},
{
"name": "CVE-2013-7114",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-7114"
},
{
"name": "CVE-2013-1417",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1417"
},
{
"name": "CVE-2012-4564",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-4564"
},
{
"name": "CVE-2013-5722",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5722"
},
{
"name": "CVE-2011-1202",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-1202"
},
{
"name": "CVE-2012-0870",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-0870"
},
{
"name": "CVE-2013-5720",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5720"
},
{
"name": "CVE-2012-2825",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2825"
},
{
"name": "CVE-2013-4475",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-4475"
}
],
"initial_release_date": "2014-03-10T00:00:00",
"last_revision_date": "2014-03-10T00:00:00",
"links": [],
"reference": "CERTFR-2014-AVI-112",
"revisions": [
{
"description": "version initiale.",
"revision_date": "2014-03-10T00:00:00.000000"
}
],
"risks": [
{
"description": "D\u00e9ni de service \u00e0 distance"
},
{
"description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
},
{
"description": "Ex\u00e9cution de code arbitraire"
},
{
"description": "D\u00e9ni de service"
},
{
"description": "Contournement de la politique de s\u00e9curit\u00e9"
},
{
"description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
}
],
"summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 corrig\u00e9es dans \u003cspan\nclass=\"textit\"\u003eOracle Solaris\u003c/span\u003e. Certaines d\u0027entre elles permettent\n\u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire \u00e0 distance,\nune ex\u00e9cution de code arbitraire et un d\u00e9ni de service \u00e0 distance.\n",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans Oracle Solaris",
"vendor_advisories": [
{
"published_at": null,
"title": "Bulletin de s\u00e9curit\u00e9 Oracle du 25 f\u00e9vrier 2014",
"url": "http://www.oracle.com/technetwork/topics/security/thirdparty-patch-map-1482893.html"
}
]
}
CERTFR-2014-AVI-193
Vulnerability from certfr_avis - Published: 2014-04-17 - Updated: 2014-04-17
De multiples vulnérabilités ont été corrigées dans Xerox FreeFlow Print Server. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, un contournement de la politique de sécurité et une atteinte à l'intégrité des données.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
None| Title | Publication Time | Tags | |||
|---|---|---|---|---|---|
|
|||||
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [
{
"description": "Xerox FreeFlow Print Server version 7",
"product": {
"name": "N/A",
"vendor": {
"name": "N/A",
"scada": false
}
}
},
{
"description": "Xerox FreeFlow Print Server version 8",
"product": {
"name": "N/A",
"vendor": {
"name": "N/A",
"scada": false
}
}
},
{
"description": "Xerox FreeFlow Print Server version 9",
"product": {
"name": "N/A",
"vendor": {
"name": "N/A",
"scada": false
}
}
}
],
"affected_systems_content": null,
"content": "## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des\ncorrectifs (cf. section Documentation).\n",
"cves": [
{
"name": "CVE-2014-0417",
"url": "https://www.cve.org/CVERecord?id=CVE-2014-0417"
},
{
"name": "CVE-2013-5910",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5910"
},
{
"name": "CVE-2012-6139",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-6139"
},
{
"name": "CVE-2014-0403",
"url": "https://www.cve.org/CVERecord?id=CVE-2014-0403"
},
{
"name": "CVE-2014-0411",
"url": "https://www.cve.org/CVERecord?id=CVE-2014-0411"
},
{
"name": "CVE-2011-3970",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-3970"
},
{
"name": "CVE-2012-2871",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2871"
},
{
"name": "CVE-2014-0424",
"url": "https://www.cve.org/CVERecord?id=CVE-2014-0424"
},
{
"name": "CVE-2014-0422",
"url": "https://www.cve.org/CVERecord?id=CVE-2014-0422"
},
{
"name": "CVE-2013-5884",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5884"
},
{
"name": "CVE-2012-2870",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2870"
},
{
"name": "CVE-2013-5907",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5907"
},
{
"name": "CVE-2013-5898",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5898"
},
{
"name": "CVE-2014-0387",
"url": "https://www.cve.org/CVERecord?id=CVE-2014-0387"
},
{
"name": "CVE-2007-6750",
"url": "https://www.cve.org/CVERecord?id=CVE-2007-6750"
},
{
"name": "CVE-2012-2893",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2893"
},
{
"name": "CVE-2014-0423",
"url": "https://www.cve.org/CVERecord?id=CVE-2014-0423"
},
{
"name": "CVE-2013-5821",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5821"
},
{
"name": "CVE-2014-0410",
"url": "https://www.cve.org/CVERecord?id=CVE-2014-0410"
},
{
"name": "CVE-2013-5888",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5888"
},
{
"name": "CVE-2014-0376",
"url": "https://www.cve.org/CVERecord?id=CVE-2014-0376"
},
{
"name": "CVE-2013-5889",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5889"
},
{
"name": "CVE-2014-0416",
"url": "https://www.cve.org/CVERecord?id=CVE-2014-0416"
},
{
"name": "CVE-2013-5899",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5899"
},
{
"name": "CVE-2013-4124",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-4124"
},
{
"name": "CVE-2013-5878",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5878"
},
{
"name": "CVE-2013-5906",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5906"
},
{
"name": "CVE-2014-0373",
"url": "https://www.cve.org/CVERecord?id=CVE-2014-0373"
},
{
"name": "CVE-2013-5905",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5905"
},
{
"name": "CVE-2014-0418",
"url": "https://www.cve.org/CVERecord?id=CVE-2014-0418"
},
{
"name": "CVE-2014-0415",
"url": "https://www.cve.org/CVERecord?id=CVE-2014-0415"
},
{
"name": "CVE-2014-0428",
"url": "https://www.cve.org/CVERecord?id=CVE-2014-0428"
},
{
"name": "CVE-2014-0375",
"url": "https://www.cve.org/CVERecord?id=CVE-2014-0375"
},
{
"name": "CVE-2014-0390",
"url": "https://www.cve.org/CVERecord?id=CVE-2014-0390"
},
{
"name": "CVE-2014-0368",
"url": "https://www.cve.org/CVERecord?id=CVE-2014-0368"
},
{
"name": "CVE-2013-5887",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5887"
},
{
"name": "CVE-2013-5872",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5872"
},
{
"name": "CVE-2013-5902",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5902"
},
{
"name": "CVE-2013-5896",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5896"
},
{
"name": "CVE-2011-1202",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-1202"
},
{
"name": "CVE-2012-2825",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2825"
},
{
"name": "CVE-2013-4475",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-4475"
}
],
"initial_release_date": "2014-04-17T00:00:00",
"last_revision_date": "2014-04-17T00:00:00",
"links": [],
"reference": "CERTFR-2014-AVI-193",
"revisions": [
{
"description": "version initiale.",
"revision_date": "2014-04-17T00:00:00.000000"
}
],
"risks": [
{
"description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
},
{
"description": "Atteinte \u00e0 l\u0027int\u00e9grit\u00e9 des donn\u00e9es"
},
{
"description": "Contournement de la politique de s\u00e9curit\u00e9"
},
{
"description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
}
],
"summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 corrig\u00e9es dans \u003cspan\nclass=\"textit\"\u003eXerox FreeFlow Print Server\u003c/span\u003e. Certaines d\u0027entre\nelles permettent \u00e0 un attaquant de provoquer une ex\u00e9cution de code\narbitraire \u00e0 distance, un contournement de la politique de s\u00e9curit\u00e9 et\nune atteinte \u00e0 l\u0027int\u00e9grit\u00e9 des donn\u00e9es.\n",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans Xerox FreeFlow Print Server",
"vendor_advisories": [
{
"published_at": null,
"title": "Bulletin de s\u00e9curit\u00e9 Xerox XRX14-002 du 18 f\u00e9vrier 2014",
"url": "http://www.xerox.com/download/security/security-bulletin/10be6-4f72fbafb1868/cert_XRX14-002_v1.0.pdf"
}
]
}
CERTA-2014-AVI-008
Vulnerability from certfr_avis - Published: 2014-01-10 - Updated: 2014-01-10
De multiples vulnérabilités ont été corrigées dans Avaya Experience Portal. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, un déni de service à distance et un déni de service.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
Avaya Experience Portal versions antérieures à 7.0
| Vendor | Product | Description |
|---|
| Title | Publication Time | Tags | ||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
|
||||||||||||||||||||
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [],
"affected_systems_content": "\u003cP\u003eAvaya Experience Portal versions ant\u00e9rieures \u00e0 7.0\u003c/P\u003e",
"content": "## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des\ncorrectifs (cf. section Documentation).\n",
"cves": [
{
"name": "CVE-2012-4244",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-4244"
},
{
"name": "CVE-2012-3511",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-3511"
},
{
"name": "CVE-2012-4405",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-4405"
},
{
"name": "CVE-2011-3970",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-3970"
},
{
"name": "CVE-2012-3400",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-3400"
},
{
"name": "CVE-2012-2871",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2871"
},
{
"name": "CVE-2012-2870",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2870"
},
{
"name": "CVE-2012-2133",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2133"
},
{
"name": "CVE-2012-3488",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-3488"
},
{
"name": "CVE-2012-1568",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-1568"
},
{
"name": "CVE-2012-2893",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2893"
},
{
"name": "CVE-2012-3546",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-3546"
},
{
"name": "CVE-2012-3489",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-3489"
},
{
"name": "CVE-2011-1202",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-1202"
},
{
"name": "CVE-2012-2825",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2825"
}
],
"initial_release_date": "2014-01-10T00:00:00",
"last_revision_date": "2014-01-10T00:00:00",
"links": [],
"reference": "CERTA-2014-AVI-008",
"revisions": [
{
"description": "version initiale.",
"revision_date": "2014-01-10T00:00:00.000000"
}
],
"risks": [
{
"description": "D\u00e9ni de service \u00e0 distance"
},
{
"description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
},
{
"description": "D\u00e9ni de service"
},
{
"description": "Contournement de la politique de s\u00e9curit\u00e9"
},
{
"description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
}
],
"summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 corrig\u00e9es dans \u003cspan\nclass=\"textit\"\u003eAvaya Experience Portal\u003c/span\u003e. Certaines d\u0027entre elles\npermettent \u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire\n\u00e0 distance, un d\u00e9ni de service \u00e0 distance et un d\u00e9ni de service.\n",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans Avaya Experience Portal",
"vendor_advisories": [
{
"published_at": null,
"title": "Bulletin de s\u00e9curit\u00e9 Avaya ASA-2012-482 du 08 janvier 2014",
"url": "https://downloads.avaya.com/css/P8/documents/100167760"
},
{
"published_at": null,
"title": "Bulletin de s\u00e9curit\u00e9 Avaya ASA-2013-041 du 08 janvier 2014",
"url": "https://downloads.avaya.com/css/P8/documents/100169684"
},
{
"published_at": null,
"title": "Bulletin de s\u00e9curit\u00e9 Avaya ASA-2012-479 du 08 janvier 2014",
"url": "https://downloads.avaya.com/css/P8/documents/100167733"
},
{
"published_at": null,
"title": "Bulletin de s\u00e9curit\u00e9 Avaya ASA-2012-448 du 08 janvier 2014",
"url": "https://downloads.avaya.com/css/P8/documents/100167395"
},
{
"published_at": null,
"title": "Bulletin de s\u00e9curit\u00e9 Avaya ASA-2012-371 du 08 janvier 2014",
"url": "https://downloads.avaya.com/css/P8/documents/100166061"
},
{
"published_at": null,
"title": "Bulletin de s\u00e9curit\u00e9 Avaya ASA-2012-444 du 08 janvier 2014",
"url": "https://downloads.avaya.com/css/P8/documents/100167374"
}
]
}
CERTA-2012-AVI-352
Vulnerability from certfr_avis - Published: 2012-06-27 - Updated: 2012-06-27
Vingt-deux vulnérabilités ont été corrigées dans Google Chrome. La majorité concerne des utilisations de pointeurs après les avoir libérés et peuvent entrainer une exécution de code arbitraire à distance. Les formats PDF et SVG sont principalement visés. Des débordements d'entiers et de mémoire tampon ont également été corrigés.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
Versions antérieures à Google Chrome 20.0.1132.43.
| Vendor | Product | Description |
|---|
| Title | Publication Time | Tags | ||||||
|---|---|---|---|---|---|---|---|---|
|
||||||||
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [],
"affected_systems_content": "\u003cP\u003eVersions ant\u00e9rieures \u00e0 Google Chrome 20.0.1132.43.\u003c/P\u003e",
"content": "## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des\ncorrectifs (cf. section Documentation).\n",
"cves": [
{
"name": "CVE-2012-2831",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2831"
},
{
"name": "CVE-2012-2832",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2832"
},
{
"name": "CVE-2012-2764",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2764"
},
{
"name": "CVE-2012-2819",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2819"
},
{
"name": "CVE-2012-2822",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2822"
},
{
"name": "CVE-2012-2829",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2829"
},
{
"name": "CVE-2012-2828",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2828"
},
{
"name": "CVE-2012-2824",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2824"
},
{
"name": "CVE-2012-2815",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2815"
},
{
"name": "CVE-2012-2821",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2821"
},
{
"name": "CVE-2012-2823",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2823"
},
{
"name": "CVE-2012-2833",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2833"
},
{
"name": "CVE-2012-2820",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2820"
},
{
"name": "CVE-2012-2826",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2826"
},
{
"name": "CVE-2012-2807",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2807"
},
{
"name": "CVE-2012-2817",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2817"
},
{
"name": "CVE-2012-2827",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2827"
},
{
"name": "CVE-2012-2816",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2816"
},
{
"name": "CVE-2012-2834",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2834"
},
{
"name": "CVE-2012-2830",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2830"
},
{
"name": "CVE-2012-2818",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2818"
},
{
"name": "CVE-2012-2825",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2825"
}
],
"initial_release_date": "2012-06-27T00:00:00",
"last_revision_date": "2012-06-27T00:00:00",
"links": [
{
"title": "Note de version Google Chrome du 26 juin 2012 :",
"url": "http://googlechromereleases.blogspot.com/2012/06/stable-channel-update_26.html"
}
],
"reference": "CERTA-2012-AVI-352",
"revisions": [
{
"description": "version initiale.",
"revision_date": "2012-06-27T00:00:00.000000"
}
],
"risks": [
{
"description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
},
{
"description": "Contournement de la politique de s\u00e9curit\u00e9"
},
{
"description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
},
{
"description": "\u00c9l\u00e9vation de privil\u00e8ges"
}
],
"summary": "Vingt-deux vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 corrig\u00e9es dans \u003cspan\nclass=\"textit\"\u003eGoogle Chrome\u003c/span\u003e. La majorit\u00e9 concerne des\nutilisations de pointeurs apr\u00e8s les avoir lib\u00e9r\u00e9s et peuvent entrainer\nune ex\u00e9cution de code arbitraire \u00e0 distance. Les formats PDF et SVG sont\nprincipalement vis\u00e9s. Des d\u00e9bordements d\u0027entiers et de m\u00e9moire tampon\nont \u00e9galement \u00e9t\u00e9 corrig\u00e9s.\n",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans Google Chrome",
"vendor_advisories": [
{
"published_at": null,
"title": "Bulletin de s\u00e9curit\u00e9 Google Chrome du 26 juin 2012",
"url": null
}
]
}
CERTA-2013-AVI-605
Vulnerability from certfr_avis - Published: 2013-10-24 - Updated: 2013-10-24
De multiples vulnérabilités ont été corrigées dans Apple iTunes. Elles permettent à un attaquant de provoquer une exécution de code arbitraire et une atteinte à la confidentialité des données.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
Versions antérieures à iTunes 11.1.2
| Vendor | Product | Description |
|---|
| Title | Publication Time | Tags | |||
|---|---|---|---|---|---|
|
|||||
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [],
"affected_systems_content": "\u003cP\u003eVersions ant\u00e9rieures \u00e0 iTunes 11.1.2\u003c/P\u003e",
"content": "## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des\ncorrectifs (cf. section Documentation).\n",
"cves": [
{
"name": "CVE-2012-5134",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-5134"
},
{
"name": "CVE-2013-1045",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1045"
},
{
"name": "CVE-2013-1040",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1040"
},
{
"name": "CVE-2013-1047",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1047"
},
{
"name": "CVE-2012-2871",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2871"
},
{
"name": "CVE-2013-1042",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1042"
},
{
"name": "CVE-2012-2870",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2870"
},
{
"name": "CVE-2013-1043",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1043"
},
{
"name": "CVE-2013-1037",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1037"
},
{
"name": "CVE-2011-3102",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-3102"
},
{
"name": "CVE-2013-1024",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1024"
},
{
"name": "CVE-2013-5125",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5125"
},
{
"name": "CVE-2013-1044",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1044"
},
{
"name": "CVE-2013-5128",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5128"
},
{
"name": "CVE-2013-2842",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-2842"
},
{
"name": "CVE-2013-5126",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5126"
},
{
"name": "CVE-2013-1039",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1039"
},
{
"name": "CVE-2012-0841",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-0841"
},
{
"name": "CVE-2013-1038",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1038"
},
{
"name": "CVE-2013-1046",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1046"
},
{
"name": "CVE-2013-5127",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5127"
},
{
"name": "CVE-2012-2807",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2807"
},
{
"name": "CVE-2013-1041",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1041"
},
{
"name": "CVE-2012-2825",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2825"
}
],
"initial_release_date": "2013-10-24T00:00:00",
"last_revision_date": "2013-10-24T00:00:00",
"links": [],
"reference": "CERTA-2013-AVI-605",
"revisions": [
{
"description": "version initiale.",
"revision_date": "2013-10-24T00:00:00.000000"
}
],
"risks": [
{
"description": "Ex\u00e9cution de code arbitraire"
},
{
"description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
}
],
"summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 corrig\u00e9es dans \u003cspan\nclass=\"textit\"\u003eApple iTunes\u003c/span\u003e. Elles permettent \u00e0 un attaquant de\nprovoquer une ex\u00e9cution de code arbitraire et une atteinte \u00e0 la\nconfidentialit\u00e9 des donn\u00e9es.\n",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans Apple iTunes",
"vendor_advisories": [
{
"published_at": null,
"title": "Bulletin de s\u00e9curit\u00e9 Apple HT6001 du 22 octobre 2013",
"url": "http://support.apple.com/kb/HT6001"
}
]
}
CERTA-2013-AVI-145
Vulnerability from certfr_avis - Published: 2013-02-21 - Updated: 2013-02-21
De multiples vulnérabilités ont été corrigées dans Oracle Solaris. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, un déni de service à distance et un contournement de la politique de sécurité.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
Oracle Solaris versions antérieures à 11.1.4.5
| Vendor | Product | Description |
|---|
| Title | Publication Time | Tags | |
|---|---|---|---|
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [],
"affected_systems_content": "\u003cP\u003eOracle Solaris versions ant\u00e9rieures \u00e0 11.1.4.5\u003c/P\u003e",
"content": "## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des\ncorrectifs (cf. section Documentation).\n",
"cves": [
{
"name": "CVE-2012-5886",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-5886"
},
{
"name": "CVE-2012-5885",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-5885"
},
{
"name": "CVE-2012-3403",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-3403"
},
{
"name": "CVE-2012-4431",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-4431"
},
{
"name": "CVE-2012-2871",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2871"
},
{
"name": "CVE-2012-2870",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2870"
},
{
"name": "CVE-2012-2893",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2893"
},
{
"name": "CVE-2012-3546",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-3546"
},
{
"name": "CVE-2012-3481",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-3481"
},
{
"name": "CVE-2012-4534",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-4534"
},
{
"name": "CVE-2012-5887",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-5887"
},
{
"name": "CVE-2011-1202",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-1202"
},
{
"name": "CVE-2012-2733",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2733"
},
{
"name": "CVE-2012-2825",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2825"
}
],
"initial_release_date": "2013-02-21T00:00:00",
"last_revision_date": "2013-02-21T00:00:00",
"links": [
{
"title": "Bulletin de s\u00e9curit\u00e9 Solaris pour libxslt du 19 f\u00e9vrier 2013",
"url": "https://blogs.oracle.com/sunsecurity/entry/multiple_vulnerabilities_in_libxslt"
},
{
"title": "Bulletin de s\u00e9curit\u00e9 Solaris pour Apache Tomcat du 19 f\u00e9vrier 2013",
"url": "https://blogs.oracle.com/sunsecurity/entry/multiple_vulnerabilities_in_apache_tomcat3"
},
{
"title": "Bulletin de s\u00e9curit\u00e9 Solaris pour Gimp du 19 f\u00e9vrier 2013",
"url": "https://blogs.oracle.com/sunsecurity/entry/multiple_vulnerabilities_in_gimp"
}
],
"reference": "CERTA-2013-AVI-145",
"revisions": [
{
"description": "version initiale.",
"revision_date": "2013-02-21T00:00:00.000000"
}
],
"risks": [
{
"description": "D\u00e9ni de service \u00e0 distance"
},
{
"description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
},
{
"description": "Contournement de la politique de s\u00e9curit\u00e9"
},
{
"description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
}
],
"summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 corrig\u00e9es dans \u003cspan\nclass=\"textit\"\u003eOracle Solaris\u003c/span\u003e. Certaines d\u0027entre elles permettent\n\u00e0 un attaquant de provoquer une ex\u00e9cution de code arbitraire \u00e0 distance,\nun d\u00e9ni de service \u00e0 distance et un contournement de la politique de\ns\u00e9curit\u00e9.\n",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans Oracle Solaris",
"vendor_advisories": [
{
"published_at": null,
"title": "Bulletin de s\u00e9curit\u00e9 Oracle du 19 f\u00e9vrier 2013",
"url": "https://blogs.oracle.com/sunsecurity/"
}
]
}
CERTA-2013-AVI-146
Vulnerability from certfr_avis - Published: 2013-02-22 - Updated: 2013-02-22
De multiples vulnérabilités ont été corrigées dans les produits VMware. Elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, un contournement de la politique de sécurité et une atteinte à la confidentialité des données.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
None| Vendor | Product | Description | ||
|---|---|---|---|---|
| VMware | N/A | VMware ESX version 4.0 | ||
| VMware | N/A | VMware ESX version 4.1 | ||
| VMware | vCenter Server | VMware vCenter Server version 5.1 | ||
| VMware | ESXi | VMware ESXi version 3.5 | ||
| VMware | ESXi | VMware ESXi version 5.0 | ||
| VMware | ESXi | VMware ESXi version 5.1 | ||
| VMware | N/A | VMware ESX version 3.5 | ||
| VMware | ESXi | VMware ESXi version 4.1 | ||
| VMware | ESXi | VMware ESXi version 4.0 | ||
| VMware | vCenter Server | VMware vCenter Server version 5.0 | ||
| VMware | N/A | VMware VirtualCenter version 4.0 | ||
| VMware | vCenter Server | VMware vCenter Server version 4.0 |
| Title | Publication Time | Tags | |
|---|---|---|---|
|
|
|||
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [
{
"description": "VMware ESX version 4.0",
"product": {
"name": "N/A",
"vendor": {
"name": "VMware",
"scada": false
}
}
},
{
"description": "VMware ESX version 4.1",
"product": {
"name": "N/A",
"vendor": {
"name": "VMware",
"scada": false
}
}
},
{
"description": "VMware vCenter Server version 5.1",
"product": {
"name": "vCenter Server",
"vendor": {
"name": "VMware",
"scada": false
}
}
},
{
"description": "VMware ESXi version 3.5",
"product": {
"name": "ESXi",
"vendor": {
"name": "VMware",
"scada": false
}
}
},
{
"description": "VMware ESXi version 5.0",
"product": {
"name": "ESXi",
"vendor": {
"name": "VMware",
"scada": false
}
}
},
{
"description": "VMware ESXi version 5.1",
"product": {
"name": "ESXi",
"vendor": {
"name": "VMware",
"scada": false
}
}
},
{
"description": "VMware ESX version 3.5",
"product": {
"name": "N/A",
"vendor": {
"name": "VMware",
"scada": false
}
}
},
{
"description": "VMware ESXi version 4.1",
"product": {
"name": "ESXi",
"vendor": {
"name": "VMware",
"scada": false
}
}
},
{
"description": "VMware ESXi version 4.0",
"product": {
"name": "ESXi",
"vendor": {
"name": "VMware",
"scada": false
}
}
},
{
"description": "VMware vCenter Server version 5.0",
"product": {
"name": "vCenter Server",
"vendor": {
"name": "VMware",
"scada": false
}
}
},
{
"description": "VMware VirtualCenter version 4.0",
"product": {
"name": "N/A",
"vendor": {
"name": "VMware",
"scada": false
}
}
},
{
"description": "VMware vCenter Server version 4.0",
"product": {
"name": "vCenter Server",
"vendor": {
"name": "VMware",
"scada": false
}
}
}
],
"affected_systems_content": null,
"content": "## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des\ncorrectifs (cf. section Documentation).\n",
"cves": [
{
"name": "CVE-2011-4609",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-4609"
},
{
"name": "CVE-2012-4244",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-4244"
},
{
"name": "CVE-2012-2110",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2110"
},
{
"name": "CVE-2009-5064",
"url": "https://www.cve.org/CVERecord?id=CVE-2009-5064"
},
{
"name": "CVE-2009-5029",
"url": "https://www.cve.org/CVERecord?id=CVE-2009-5029"
},
{
"name": "CVE-2011-3970",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-3970"
},
{
"name": "CVE-2012-2871",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2871"
},
{
"name": "CVE-2012-3404",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-3404"
},
{
"name": "CVE-2012-2870",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2870"
},
{
"name": "CVE-2013-1405",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1405"
},
{
"name": "CVE-2012-6324",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-6324"
},
{
"name": "CVE-2011-3102",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-3102"
},
{
"name": "CVE-2012-3406",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-3406"
},
{
"name": "CVE-2010-0830",
"url": "https://www.cve.org/CVERecord?id=CVE-2010-0830"
},
{
"name": "CVE-2012-0864",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-0864"
},
{
"name": "CVE-2012-6326",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-6326"
},
{
"name": "CVE-2013-1659",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1659"
},
{
"name": "CVE-2012-2807",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2807"
},
{
"name": "CVE-2012-3405",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-3405"
},
{
"name": "CVE-2012-3480",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-3480"
},
{
"name": "CVE-2012-6325",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-6325"
},
{
"name": "CVE-2011-1202",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-1202"
},
{
"name": "CVE-2011-1089",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-1089"
},
{
"name": "CVE-2012-2825",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2825"
}
],
"initial_release_date": "2013-02-22T00:00:00",
"last_revision_date": "2013-02-22T00:00:00",
"links": [
{
"title": "Bulletin de s\u00e9curit\u00e9 VMware VMSA-2013-0003 VMSA-2012-0018 VMSA-2013-0001 du 21 f\u00e9vrier 2013",
"url": "http://www.vmware.com/security/advisories/VMSA-2012-0018.html"
},
{
"title": "Bulletin de s\u00e9curit\u00e9 VMware VMSA-2013-0003 VMSA-2012-0018 VMSA-2013-0001 du 21 f\u00e9vrier 2013",
"url": "http://www.vmware.com/security/advisories/VMSA-2013-0001.html"
},
{
"title": "Bulletin de s\u00e9curit\u00e9 VMware VMSA-2013-0003 VMSA-2012-0018 VMSA-2013-0001 du 21 f\u00e9vrier 2013",
"url": "http://www.vmware.com/security/advisories/VMSA-2013-0003.html"
}
],
"reference": "CERTA-2013-AVI-146",
"revisions": [
{
"description": "version initiale.",
"revision_date": "2013-02-22T00:00:00.000000"
}
],
"risks": [
{
"description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
},
{
"description": "Contournement de la politique de s\u00e9curit\u00e9"
},
{
"description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
}
],
"summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 corrig\u00e9es dans les produits \u003cspan\nclass=\"textit\"\u003eVMware\u003c/span\u003e. Elles permettent \u00e0 un attaquant de\nprovoquer une ex\u00e9cution de code arbitraire \u00e0 distance, un contournement\nde la politique de s\u00e9curit\u00e9 et une atteinte \u00e0 la confidentialit\u00e9 des\ndonn\u00e9es.\n",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans les produits VMware",
"vendor_advisories": [
{
"published_at": null,
"title": "Bulletin de s\u00e9curit\u00e9 VMware VMSA-2012-0018 du 21 f\u00e9vrier 2013",
"url": null
},
{
"published_at": null,
"title": "Bulletin de s\u00e9curit\u00e9 VMware VMSA-2013-0003 du 21 f\u00e9vrier 2013",
"url": null
},
{
"published_at": null,
"title": "Bulletin de s\u00e9curit\u00e9 VMware VMSA-2013-0001 du 21 f\u00e9vrier 2013",
"url": null
}
]
}
CERTA-2013-AVI-536
Vulnerability from certfr_avis - Published: 2013-09-19 - Updated: 2013-09-19
De multiples vulnérabilités ont été corrigées dans Apple iOS. Elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, une atteinte à la confidentialité des données et une élévation de privilèges.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
Versions antérieures à iOS 7
| Vendor | Product | Description |
|---|
| Title | Publication Time | Tags | |||
|---|---|---|---|---|---|
|
|||||
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [],
"affected_systems_content": "\u003cP\u003eVersions ant\u00e9rieures \u00e0 iOS 7\u003c/P\u003e",
"content": "## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des\ncorrectifs (cf. section Documentation).\n",
"cves": [
{
"name": "CVE-2013-0993",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0993"
},
{
"name": "CVE-2013-1006",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1006"
},
{
"name": "CVE-2012-5134",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-5134"
},
{
"name": "CVE-2013-5129",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5129"
},
{
"name": "CVE-2013-0998",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0998"
},
{
"name": "CVE-2013-5150",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5150"
},
{
"name": "CVE-2013-1045",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1045"
},
{
"name": "CVE-2013-1040",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1040"
},
{
"name": "CVE-2013-2848",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-2848"
},
{
"name": "CVE-2013-1047",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1047"
},
{
"name": "CVE-2013-5147",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5147"
},
{
"name": "CVE-2013-1001",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1001"
},
{
"name": "CVE-2013-1012",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1012"
},
{
"name": "CVE-2013-3954",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-3954"
},
{
"name": "CVE-2013-4616",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-4616"
},
{
"name": "CVE-2013-1019",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1019"
},
{
"name": "CVE-2013-5140",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5140"
},
{
"name": "CVE-2013-1005",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1005"
},
{
"name": "CVE-2012-2871",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2871"
},
{
"name": "CVE-2013-5152",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5152"
},
{
"name": "CVE-2013-0992",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0992"
},
{
"name": "CVE-2013-1042",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1042"
},
{
"name": "CVE-2013-5154",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5154"
},
{
"name": "CVE-2012-2870",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2870"
},
{
"name": "CVE-2013-0994",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0994"
},
{
"name": "CVE-2013-1010",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1010"
},
{
"name": "CVE-2013-5134",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5134"
},
{
"name": "CVE-2013-0879",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0879"
},
{
"name": "CVE-2013-0926",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0926"
},
{
"name": "CVE-2013-5157",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5157"
},
{
"name": "CVE-2013-5158",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5158"
},
{
"name": "CVE-2013-1043",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1043"
},
{
"name": "CVE-2013-1007",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1007"
},
{
"name": "CVE-2013-0995",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0995"
},
{
"name": "CVE-2013-1037",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1037"
},
{
"name": "CVE-2011-3102",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-3102"
},
{
"name": "CVE-2013-1036",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1036"
},
{
"name": "CVE-2013-0957",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0957"
},
{
"name": "CVE-2013-5153",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5153"
},
{
"name": "CVE-2013-1025",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1025"
},
{
"name": "CVE-2013-1028",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1028"
},
{
"name": "CVE-2013-0991",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0991"
},
{
"name": "CVE-2013-1000",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1000"
},
{
"name": "CVE-2013-5156",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5156"
},
{
"name": "CVE-2013-5125",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5125"
},
{
"name": "CVE-2013-5159",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5159"
},
{
"name": "CVE-2013-1044",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1044"
},
{
"name": "CVE-2013-1008",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1008"
},
{
"name": "CVE-2013-1003",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1003"
},
{
"name": "CVE-2013-5128",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5128"
},
{
"name": "CVE-2013-1004",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1004"
},
{
"name": "CVE-2013-5145",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5145"
},
{
"name": "CVE-2013-2842",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-2842"
},
{
"name": "CVE-2013-5142",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5142"
},
{
"name": "CVE-2013-5126",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5126"
},
{
"name": "CVE-2013-1039",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1039"
},
{
"name": "CVE-2013-1002",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1002"
},
{
"name": "CVE-2013-5155",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5155"
},
{
"name": "CVE-2013-0996",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0996"
},
{
"name": "CVE-2013-5131",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5131"
},
{
"name": "CVE-2013-3953",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-3953"
},
{
"name": "CVE-2013-5141",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5141"
},
{
"name": "CVE-2012-0841",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-0841"
},
{
"name": "CVE-2013-0997",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0997"
},
{
"name": "CVE-2013-5139",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5139"
},
{
"name": "CVE-2013-3950",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-3950"
},
{
"name": "CVE-2013-1038",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1038"
},
{
"name": "CVE-2013-5151",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5151"
},
{
"name": "CVE-2013-0999",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0999"
},
{
"name": "CVE-2013-1026",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1026"
},
{
"name": "CVE-2013-1046",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1046"
},
{
"name": "CVE-2013-3955",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-3955"
},
{
"name": "CVE-2013-5127",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5127"
},
{
"name": "CVE-2012-2807",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2807"
},
{
"name": "CVE-2013-5149",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5149"
},
{
"name": "CVE-2013-5138",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5138"
},
{
"name": "CVE-2011-2391",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-2391"
},
{
"name": "CVE-2013-1041",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1041"
},
{
"name": "CVE-2012-2825",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2825"
},
{
"name": "CVE-2013-5137",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5137"
}
],
"initial_release_date": "2013-09-19T00:00:00",
"last_revision_date": "2013-09-19T00:00:00",
"links": [],
"reference": "CERTA-2013-AVI-536",
"revisions": [
{
"description": "version initiale.",
"revision_date": "2013-09-19T00:00:00.000000"
}
],
"risks": [
{
"description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
},
{
"description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
},
{
"description": "\u00c9l\u00e9vation de privil\u00e8ges"
}
],
"summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 corrig\u00e9es dans \u003cspan\nclass=\"textit\"\u003eApple iOS\u003c/span\u003e. Elles permettent \u00e0 un attaquant de\nprovoquer une ex\u00e9cution de code arbitraire \u00e0 distance, une atteinte \u00e0 la\nconfidentialit\u00e9 des donn\u00e9es et une \u00e9l\u00e9vation de privil\u00e8ges.\n",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans Apple iOS",
"vendor_advisories": [
{
"published_at": null,
"title": "Bulletin de s\u00e9curit\u00e9 Apple HT5934 du 18 septembre 2013",
"url": "http://support.apple.com/kb/HT5934"
}
]
}
CERTA-2013-AVI-541
Vulnerability from certfr_avis - Published: 2013-09-23 - Updated: 2013-09-23
De multiples vulnérabilités ont été corrigées dans Apple TV. Certaines d'entre elles permettent à un attaquant de provoquer une exécution de code arbitraire à distance, un déni de service à distance et une atteinte à la confidentialité des données.
Solution
Se référer au bulletin de sécurité de l'éditeur pour l'obtention des correctifs (cf. section Documentation).
Apple TV versions antérieures à 6.0
| Vendor | Product | Description |
|---|
| Title | Publication Time | Tags | |||
|---|---|---|---|---|---|
|
|||||
{
"$ref": "https://www.cert.ssi.gouv.fr/openapi.json",
"affected_systems": [],
"affected_systems_content": "\u003cP\u003eApple TV versions ant\u00e9rieures \u00e0 6.0\u003c/P\u003e",
"content": "## Solution\n\nSe r\u00e9f\u00e9rer au bulletin de s\u00e9curit\u00e9 de l\u0027\u00e9diteur pour l\u0027obtention des\ncorrectifs (cf. section Documentation).\n",
"cves": [
{
"name": "CVE-2013-0993",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0993"
},
{
"name": "CVE-2013-1006",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1006"
},
{
"name": "CVE-2012-5134",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-5134"
},
{
"name": "CVE-2013-0998",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0998"
},
{
"name": "CVE-2013-1045",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1045"
},
{
"name": "CVE-2013-1040",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1040"
},
{
"name": "CVE-2013-1047",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1047"
},
{
"name": "CVE-2013-1001",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1001"
},
{
"name": "CVE-2013-3954",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-3954"
},
{
"name": "CVE-2013-1019",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1019"
},
{
"name": "CVE-2013-5140",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5140"
},
{
"name": "CVE-2013-1005",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1005"
},
{
"name": "CVE-2012-2871",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2871"
},
{
"name": "CVE-2013-0992",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0992"
},
{
"name": "CVE-2013-1042",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1042"
},
{
"name": "CVE-2012-2870",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2870"
},
{
"name": "CVE-2013-0994",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0994"
},
{
"name": "CVE-2013-1010",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1010"
},
{
"name": "CVE-2013-5134",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5134"
},
{
"name": "CVE-2013-0879",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0879"
},
{
"name": "CVE-2013-1043",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1043"
},
{
"name": "CVE-2013-1007",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1007"
},
{
"name": "CVE-2013-0995",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0995"
},
{
"name": "CVE-2013-1037",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1037"
},
{
"name": "CVE-2011-3102",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-3102"
},
{
"name": "CVE-2013-1025",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1025"
},
{
"name": "CVE-2013-0991",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0991"
},
{
"name": "CVE-2013-1000",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1000"
},
{
"name": "CVE-2013-5125",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5125"
},
{
"name": "CVE-2013-1044",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1044"
},
{
"name": "CVE-2013-1008",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1008"
},
{
"name": "CVE-2013-1003",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1003"
},
{
"name": "CVE-2013-5128",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5128"
},
{
"name": "CVE-2013-1004",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1004"
},
{
"name": "CVE-2013-5145",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5145"
},
{
"name": "CVE-2013-2842",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-2842"
},
{
"name": "CVE-2013-5142",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5142"
},
{
"name": "CVE-2013-5126",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5126"
},
{
"name": "CVE-2013-1039",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1039"
},
{
"name": "CVE-2013-1002",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1002"
},
{
"name": "CVE-2013-0996",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0996"
},
{
"name": "CVE-2013-3953",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-3953"
},
{
"name": "CVE-2012-0841",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-0841"
},
{
"name": "CVE-2013-0997",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0997"
},
{
"name": "CVE-2013-5139",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5139"
},
{
"name": "CVE-2013-3950",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-3950"
},
{
"name": "CVE-2013-1011",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1011"
},
{
"name": "CVE-2013-1038",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1038"
},
{
"name": "CVE-2013-0999",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-0999"
},
{
"name": "CVE-2013-1026",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1026"
},
{
"name": "CVE-2013-1046",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1046"
},
{
"name": "CVE-2013-5127",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5127"
},
{
"name": "CVE-2012-2807",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2807"
},
{
"name": "CVE-2013-5138",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-5138"
},
{
"name": "CVE-2011-2391",
"url": "https://www.cve.org/CVERecord?id=CVE-2011-2391"
},
{
"name": "CVE-2013-1041",
"url": "https://www.cve.org/CVERecord?id=CVE-2013-1041"
},
{
"name": "CVE-2012-2825",
"url": "https://www.cve.org/CVERecord?id=CVE-2012-2825"
}
],
"initial_release_date": "2013-09-23T00:00:00",
"last_revision_date": "2013-09-23T00:00:00",
"links": [],
"reference": "CERTA-2013-AVI-541",
"revisions": [
{
"description": "version initiale.",
"revision_date": "2013-09-23T00:00:00.000000"
}
],
"risks": [
{
"description": "D\u00e9ni de service \u00e0 distance"
},
{
"description": "Ex\u00e9cution de code arbitraire \u00e0 distance"
},
{
"description": "Atteinte \u00e0 la confidentialit\u00e9 des donn\u00e9es"
},
{
"description": "\u00c9l\u00e9vation de privil\u00e8ges"
}
],
"summary": "De multiples vuln\u00e9rabilit\u00e9s ont \u00e9t\u00e9 corrig\u00e9es dans \u003cspan\nclass=\"textit\"\u003eApple TV\u003c/span\u003e. Certaines d\u0027entre elles permettent \u00e0 un\nattaquant de provoquer une ex\u00e9cution de code arbitraire \u00e0 distance, un\nd\u00e9ni de service \u00e0 distance et une atteinte \u00e0 la confidentialit\u00e9 des\ndonn\u00e9es.\n",
"title": "Multiples vuln\u00e9rabilit\u00e9s dans Apple TV",
"vendor_advisories": [
{
"published_at": null,
"title": "Bulletin de s\u00e9curit\u00e9 Apple HT5935 du 19 septembre 2013",
"url": "http://support.apple.com/kb/HT5935"
}
]
}
FKIE_CVE-2012-2825
Vulnerability from fkie_nvd - Published: 2012-06-27 10:18 - Updated: 2025-04-11 00:51| Vendor | Product | Version | |
|---|---|---|---|
| chrome | * | ||
| chrome | 20.0.1132.0 | ||
| chrome | 20.0.1132.1 | ||
| chrome | 20.0.1132.2 | ||
| chrome | 20.0.1132.3 | ||
| chrome | 20.0.1132.4 | ||
| chrome | 20.0.1132.5 | ||
| chrome | 20.0.1132.6 | ||
| chrome | 20.0.1132.7 | ||
| chrome | 20.0.1132.8 | ||
| chrome | 20.0.1132.9 | ||
| chrome | 20.0.1132.10 | ||
| chrome | 20.0.1132.11 | ||
| chrome | 20.0.1132.12 | ||
| chrome | 20.0.1132.13 | ||
| chrome | 20.0.1132.14 | ||
| chrome | 20.0.1132.15 | ||
| chrome | 20.0.1132.16 | ||
| chrome | 20.0.1132.17 | ||
| chrome | 20.0.1132.18 | ||
| chrome | 20.0.1132.19 | ||
| chrome | 20.0.1132.20 | ||
| chrome | 20.0.1132.21 | ||
| chrome | 20.0.1132.22 | ||
| chrome | 20.0.1132.23 | ||
| chrome | 20.0.1132.24 | ||
| chrome | 20.0.1132.25 | ||
| chrome | 20.0.1132.26 | ||
| chrome | 20.0.1132.27 | ||
| chrome | 20.0.1132.28 | ||
| chrome | 20.0.1132.29 | ||
| chrome | 20.0.1132.30 | ||
| chrome | 20.0.1132.31 | ||
| chrome | 20.0.1132.32 | ||
| chrome | 20.0.1132.33 | ||
| chrome | 20.0.1132.34 | ||
| chrome | 20.0.1132.35 | ||
| chrome | 20.0.1132.36 | ||
| chrome | 20.0.1132.37 | ||
| chrome | 20.0.1132.38 | ||
| chrome | 20.0.1132.39 | ||
| chrome | 20.0.1132.40 | ||
| chrome | 20.0.1132.41 |
{
"configurations": [
{
"nodes": [
{
"cpeMatch": [
{
"criteria": "cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*",
"matchCriteriaId": "0C5E7E3F-3DF6-466D-825E-7484B7F0ED0E",
"versionEndIncluding": "20.0.1132.42",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.0:*:*:*:*:*:*:*",
"matchCriteriaId": "5559EFC8-18F4-4E5A-9198-E86D0A2D95DE",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.1:*:*:*:*:*:*:*",
"matchCriteriaId": "F2D24BBC-FED3-4744-AC61-CB11531E9D48",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.2:*:*:*:*:*:*:*",
"matchCriteriaId": "B4C0FF1E-CE10-45EC-B35C-0D5623697998",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.3:*:*:*:*:*:*:*",
"matchCriteriaId": "74ACE4E5-56D6-4EDC-8E92-9937A87D28CE",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.4:*:*:*:*:*:*:*",
"matchCriteriaId": "EC1BC2A3-CE9B-4D6F-B9D5-D408B714468B",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.5:*:*:*:*:*:*:*",
"matchCriteriaId": "0F2A3129-C209-4E67-AD08-2DA3D289FB37",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.6:*:*:*:*:*:*:*",
"matchCriteriaId": "D3E3C624-A446-44CC-8141-410E521A21AE",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.7:*:*:*:*:*:*:*",
"matchCriteriaId": "8BE627E1-DFCB-40D0-A84C-16AE80C73E52",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.8:*:*:*:*:*:*:*",
"matchCriteriaId": "D6694631-7054-48AF-B046-32694BFA5DCC",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.9:*:*:*:*:*:*:*",
"matchCriteriaId": "A09C563A-5541-4799-9F6E-B20ABD211185",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.10:*:*:*:*:*:*:*",
"matchCriteriaId": "FCCF11B8-1997-4930-AEF2-D008B55D3CB3",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.11:*:*:*:*:*:*:*",
"matchCriteriaId": "2BB5CC75-658A-455A-9BB2-D702523E66FC",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.12:*:*:*:*:*:*:*",
"matchCriteriaId": "13341A40-4EDF-4E15-A693-95F7DEDA9803",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.13:*:*:*:*:*:*:*",
"matchCriteriaId": "55EA4229-47F8-435E-8475-8E79D5AD7340",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.14:*:*:*:*:*:*:*",
"matchCriteriaId": "32C0848C-4A1A-4068-8384-F7FC9314B096",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.15:*:*:*:*:*:*:*",
"matchCriteriaId": "A6A5FC9C-F50E-48BA-88F3-9CCE0EF23F44",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.16:*:*:*:*:*:*:*",
"matchCriteriaId": "08192C42-C286-4694-B45E-25FC177FF8FD",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.17:*:*:*:*:*:*:*",
"matchCriteriaId": "D6CEE0F7-7795-4FB0-BE4E-11795661CE66",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.18:*:*:*:*:*:*:*",
"matchCriteriaId": "A0B04B9A-302F-48BB-BCBC-4B2302F73F67",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.19:*:*:*:*:*:*:*",
"matchCriteriaId": "A7C41D41-F357-4AA4-AF10-1740E0F65A61",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.20:*:*:*:*:*:*:*",
"matchCriteriaId": "BEE569D4-8DC2-44BD-9FEC-4C8E18C1E10F",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.21:*:*:*:*:*:*:*",
"matchCriteriaId": "71E32C87-CABE-464D-85AE-E5A53E954317",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.22:*:*:*:*:*:*:*",
"matchCriteriaId": "E7004E55-4987-4ADF-B99E-8EE85AC2E626",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.23:*:*:*:*:*:*:*",
"matchCriteriaId": "EBE6A4F6-3903-452C-999A-A26629CC6DEB",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.24:*:*:*:*:*:*:*",
"matchCriteriaId": "757DFB66-2F5F-421E-8014-8CE3E0E83F4D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.25:*:*:*:*:*:*:*",
"matchCriteriaId": "85675AB6-CA91-462F-903A-7F9A2400A4E6",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.26:*:*:*:*:*:*:*",
"matchCriteriaId": "B78196D7-8D7F-483B-A587-DCD94FE28E22",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.27:*:*:*:*:*:*:*",
"matchCriteriaId": "1DC91ABB-129A-467E-9900-D84886BE068E",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.28:*:*:*:*:*:*:*",
"matchCriteriaId": "0CD4E658-4860-425F-A890-B234791BD2D2",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.29:*:*:*:*:*:*:*",
"matchCriteriaId": "06FF0461-D045-4BC5-B20D-28C7D3A12BE2",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.30:*:*:*:*:*:*:*",
"matchCriteriaId": "5CB5D96D-9642-4B48-98A2-713E05977948",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.31:*:*:*:*:*:*:*",
"matchCriteriaId": "7EDE7D7B-490C-490D-9F2A-00DF72598ACF",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.32:*:*:*:*:*:*:*",
"matchCriteriaId": "2485E36F-E014-45F9-80D2-79CC560DD68D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.33:*:*:*:*:*:*:*",
"matchCriteriaId": "85809C6A-B4C9-4B57-A295-2805A789F495",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.34:*:*:*:*:*:*:*",
"matchCriteriaId": "E1DFFBD0-5E00-453B-B33A-A94B43278F33",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.35:*:*:*:*:*:*:*",
"matchCriteriaId": "6A04F552-DB31-4F27-A1ED-38A1D857E6CE",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.36:*:*:*:*:*:*:*",
"matchCriteriaId": "C49C1C7C-D235-45F2-B54A-E82DCF29E53A",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.37:*:*:*:*:*:*:*",
"matchCriteriaId": "1B0FBAF0-31DE-42DA-B9A0-9E06DB4C59ED",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.38:*:*:*:*:*:*:*",
"matchCriteriaId": "56C38A9D-20A6-4AE9-93DA-00D69130907D",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.39:*:*:*:*:*:*:*",
"matchCriteriaId": "6529FF3F-6316-4093-8F93-1977809C6151",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.40:*:*:*:*:*:*:*",
"matchCriteriaId": "18A1B84B-B5AC-4E4A-83C6-601C3D359527",
"vulnerable": true
},
{
"criteria": "cpe:2.3:a:google:chrome:20.0.1132.41:*:*:*:*:*:*:*",
"matchCriteriaId": "5F1B10F5-D24A-4614-B9D4-927380E02011",
"vulnerable": true
}
],
"negate": false,
"operator": "OR"
}
]
}
],
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "The XSL implementation in Google Chrome before 20.0.1132.43 allows remote attackers to cause a denial of service (incorrect read operation) via unspecified vectors."
},
{
"lang": "es",
"value": "La implementaci\u00f3n XSL en Google Chrome anterior a v20.0.1132.43 permite a atacantes remotos causar una denegaci\u00f3n de servicio (operaci\u00f3n de lectura incorrecta) a trav\u00e9s de vectores no especificados."
}
],
"id": "CVE-2012-2825",
"lastModified": "2025-04-11T00:51:21.963",
"metrics": {
"cvssMetricV2": [
{
"acInsufInfo": true,
"baseSeverity": "MEDIUM",
"cvssData": {
"accessComplexity": "LOW",
"accessVector": "NETWORK",
"authentication": "NONE",
"availabilityImpact": "PARTIAL",
"baseScore": 5.0,
"confidentialityImpact": "NONE",
"integrityImpact": "NONE",
"vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:P",
"version": "2.0"
},
"exploitabilityScore": 10.0,
"impactScore": 2.9,
"obtainAllPrivilege": false,
"obtainOtherPrivilege": false,
"obtainUserPrivilege": false,
"source": "nvd@nist.gov",
"type": "Primary",
"userInteractionRequired": false
}
]
},
"published": "2012-06-27T10:18:39.120",
"references": [
{
"source": "chrome-cve-admin@google.com",
"url": "http://code.google.com/p/chromium/issues/detail?id=127417"
},
{
"source": "chrome-cve-admin@google.com",
"url": "http://googlechromereleases.blogspot.com/2012/06/stable-channel-update_26.html"
},
{
"source": "chrome-cve-admin@google.com",
"url": "http://lists.apple.com/archives/security-announce/2013/Oct/msg00009.html"
},
{
"source": "chrome-cve-admin@google.com",
"url": "http://lists.apple.com/archives/security-announce/2013/Sep/msg00006.html"
},
{
"source": "chrome-cve-admin@google.com",
"url": "http://secunia.com/advisories/54886"
},
{
"source": "chrome-cve-admin@google.com",
"url": "http://support.apple.com/kb/HT5934"
},
{
"source": "chrome-cve-admin@google.com",
"url": "http://support.apple.com/kb/HT6001"
},
{
"source": "chrome-cve-admin@google.com",
"url": "https://hermes.opensuse.org/messages/15075728"
},
{
"source": "chrome-cve-admin@google.com",
"url": "https://www.suse.com/support/update/announcement/2013/suse-su-20131654-1.html"
},
{
"source": "chrome-cve-admin@google.com",
"url": "https://www.suse.com/support/update/announcement/2013/suse-su-20131656-1.html"
},
{
"source": "af854a3a-2127-422b-91ae-364da2661108",
"url": "http://code.google.com/p/chromium/issues/detail?id=127417"
},
{
"source": "af854a3a-2127-422b-91ae-364da2661108",
"url": "http://googlechromereleases.blogspot.com/2012/06/stable-channel-update_26.html"
},
{
"source": "af854a3a-2127-422b-91ae-364da2661108",
"url": "http://lists.apple.com/archives/security-announce/2013/Oct/msg00009.html"
},
{
"source": "af854a3a-2127-422b-91ae-364da2661108",
"url": "http://lists.apple.com/archives/security-announce/2013/Sep/msg00006.html"
},
{
"source": "af854a3a-2127-422b-91ae-364da2661108",
"url": "http://secunia.com/advisories/54886"
},
{
"source": "af854a3a-2127-422b-91ae-364da2661108",
"url": "http://support.apple.com/kb/HT5934"
},
{
"source": "af854a3a-2127-422b-91ae-364da2661108",
"url": "http://support.apple.com/kb/HT6001"
},
{
"source": "af854a3a-2127-422b-91ae-364da2661108",
"url": "https://hermes.opensuse.org/messages/15075728"
},
{
"source": "af854a3a-2127-422b-91ae-364da2661108",
"url": "https://www.suse.com/support/update/announcement/2013/suse-su-20131654-1.html"
},
{
"source": "af854a3a-2127-422b-91ae-364da2661108",
"url": "https://www.suse.com/support/update/announcement/2013/suse-su-20131656-1.html"
}
],
"sourceIdentifier": "chrome-cve-admin@google.com",
"vulnStatus": "Deferred",
"weaknesses": [
{
"description": [
{
"lang": "en",
"value": "CWE-20"
}
],
"source": "nvd@nist.gov",
"type": "Primary"
}
]
}
GSD-2012-2825
Vulnerability from gsd - Updated: 2023-12-13 01:20{
"GSD": {
"alias": "CVE-2012-2825",
"description": "The XSL implementation in Google Chrome before 20.0.1132.43 allows remote attackers to cause a denial of service (incorrect read operation) via unspecified vectors.",
"id": "GSD-2012-2825",
"references": [
"https://www.suse.com/security/cve/CVE-2012-2825.html",
"https://access.redhat.com/errata/RHSA-2012:1265",
"https://alas.aws.amazon.com/cve/html/CVE-2012-2825.html",
"https://linux.oracle.com/cve/CVE-2012-2825.html"
]
},
"gsd": {
"metadata": {
"exploitCode": "unknown",
"remediation": "unknown",
"reportConfidence": "confirmed",
"type": "vulnerability"
},
"osvSchema": {
"aliases": [
"CVE-2012-2825"
],
"details": "The XSL implementation in Google Chrome before 20.0.1132.43 allows remote attackers to cause a denial of service (incorrect read operation) via unspecified vectors.",
"id": "GSD-2012-2825",
"modified": "2023-12-13T01:20:16.087369Z",
"schema_version": "1.4.0"
}
},
"namespaces": {
"cve.org": {
"CVE_data_meta": {
"ASSIGNER": "security@google.com",
"ID": "CVE-2012-2825",
"STATE": "PUBLIC"
},
"affects": {
"vendor": {
"vendor_data": [
{
"product": {
"product_data": [
{
"product_name": "n/a",
"version": {
"version_data": [
{
"version_value": "n/a"
}
]
}
}
]
},
"vendor_name": "n/a"
}
]
}
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "eng",
"value": "The XSL implementation in Google Chrome before 20.0.1132.43 allows remote attackers to cause a denial of service (incorrect read operation) via unspecified vectors."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "eng",
"value": "n/a"
}
]
}
]
},
"references": {
"reference_data": [
{
"name": "http://code.google.com/p/chromium/issues/detail?id=127417",
"refsource": "CONFIRM",
"url": "http://code.google.com/p/chromium/issues/detail?id=127417"
},
{
"name": "APPLE-SA-2013-10-22-8",
"refsource": "APPLE",
"url": "http://lists.apple.com/archives/security-announce/2013/Oct/msg00009.html"
},
{
"name": "openSUSE-SU-2012:0813",
"refsource": "SUSE",
"url": "https://hermes.opensuse.org/messages/15075728"
},
{
"name": "SUSE-SU-2013:1654",
"refsource": "SUSE",
"url": "https://www.suse.com/support/update/announcement/2013/suse-su-20131654-1.html"
},
{
"name": "http://support.apple.com/kb/HT6001",
"refsource": "CONFIRM",
"url": "http://support.apple.com/kb/HT6001"
},
{
"name": "http://googlechromereleases.blogspot.com/2012/06/stable-channel-update_26.html",
"refsource": "CONFIRM",
"url": "http://googlechromereleases.blogspot.com/2012/06/stable-channel-update_26.html"
},
{
"name": "SUSE-SU-2013:1656",
"refsource": "SUSE",
"url": "https://www.suse.com/support/update/announcement/2013/suse-su-20131656-1.html"
},
{
"name": "54886",
"refsource": "SECUNIA",
"url": "http://secunia.com/advisories/54886"
},
{
"name": "http://support.apple.com/kb/HT5934",
"refsource": "CONFIRM",
"url": "http://support.apple.com/kb/HT5934"
},
{
"name": "APPLE-SA-2013-09-18-2",
"refsource": "APPLE",
"url": "http://lists.apple.com/archives/security-announce/2013/Sep/msg00006.html"
}
]
}
},
"nvd.nist.gov": {
"configurations": {
"CVE_data_version": "4.0",
"nodes": [
{
"children": [],
"cpe_match": [
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.16:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.15:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.7:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.6:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.21:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.20:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.17:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.10:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.9:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.8:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.1:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.0:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.27:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.28:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.35:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.36:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.37:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.18:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.12:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.11:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.3:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.2:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.25:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.26:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.33:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.34:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*",
"cpe_name": [],
"versionEndIncluding": "20.0.1132.42",
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.19:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.22:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.29:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.30:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.38:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.39:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.14:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.13:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.5:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.4:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.23:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.24:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.31:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.32:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.40:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
},
{
"cpe23Uri": "cpe:2.3:a:google:chrome:20.0.1132.41:*:*:*:*:*:*:*",
"cpe_name": [],
"vulnerable": true
}
],
"operator": "OR"
}
]
},
"cve": {
"CVE_data_meta": {
"ASSIGNER": "security@google.com",
"ID": "CVE-2012-2825"
},
"data_format": "MITRE",
"data_type": "CVE",
"data_version": "4.0",
"description": {
"description_data": [
{
"lang": "en",
"value": "The XSL implementation in Google Chrome before 20.0.1132.43 allows remote attackers to cause a denial of service (incorrect read operation) via unspecified vectors."
}
]
},
"problemtype": {
"problemtype_data": [
{
"description": [
{
"lang": "en",
"value": "CWE-20"
}
]
}
]
},
"references": {
"reference_data": [
{
"name": "http://code.google.com/p/chromium/issues/detail?id=127417",
"refsource": "CONFIRM",
"tags": [],
"url": "http://code.google.com/p/chromium/issues/detail?id=127417"
},
{
"name": "http://googlechromereleases.blogspot.com/2012/06/stable-channel-update_26.html",
"refsource": "CONFIRM",
"tags": [
"Vendor Advisory"
],
"url": "http://googlechromereleases.blogspot.com/2012/06/stable-channel-update_26.html"
},
{
"name": "openSUSE-SU-2012:0813",
"refsource": "SUSE",
"tags": [],
"url": "https://hermes.opensuse.org/messages/15075728"
},
{
"name": "http://support.apple.com/kb/HT5934",
"refsource": "CONFIRM",
"tags": [],
"url": "http://support.apple.com/kb/HT5934"
},
{
"name": "APPLE-SA-2013-09-18-2",
"refsource": "APPLE",
"tags": [],
"url": "http://lists.apple.com/archives/security-announce/2013/Sep/msg00006.html"
},
{
"name": "54886",
"refsource": "SECUNIA",
"tags": [],
"url": "http://secunia.com/advisories/54886"
},
{
"name": "APPLE-SA-2013-10-22-8",
"refsource": "APPLE",
"tags": [],
"url": "http://lists.apple.com/archives/security-announce/2013/Oct/msg00009.html"
},
{
"name": "SUSE-SU-2013:1656",
"refsource": "SUSE",
"tags": [],
"url": "https://www.suse.com/support/update/announcement/2013/suse-su-20131656-1.html"
},
{
"name": "SUSE-SU-2013:1654",
"refsource": "SUSE",
"tags": [],
"url": "https://www.suse.com/support/update/announcement/2013/suse-su-20131654-1.html"
},
{
"name": "http://support.apple.com/kb/HT6001",
"refsource": "CONFIRM",
"tags": [],
"url": "http://support.apple.com/kb/HT6001"
}
]
}
},
"impact": {
"baseMetricV2": {
"acInsufInfo": true,
"cvssV2": {
"accessComplexity": "LOW",
"accessVector": "NETWORK",
"authentication": "NONE",
"availabilityImpact": "PARTIAL",
"baseScore": 5.0,
"confidentialityImpact": "NONE",
"integrityImpact": "NONE",
"vectorString": "AV:N/AC:L/Au:N/C:N/I:N/A:P",
"version": "2.0"
},
"exploitabilityScore": 10.0,
"impactScore": 2.9,
"obtainAllPrivilege": false,
"obtainOtherPrivilege": false,
"obtainUserPrivilege": false,
"severity": "MEDIUM",
"userInteractionRequired": false
}
},
"lastModifiedDate": "2014-01-28T04:45Z",
"publishedDate": "2012-06-27T10:18Z"
}
}
}
GHSA-FJ65-38P4-J4MP
Vulnerability from github – Published: 2022-05-17 04:54 – Updated: 2022-05-17 04:54The XSL implementation in Google Chrome before 20.0.1132.43 allows remote attackers to cause a denial of service (incorrect read operation) via unspecified vectors.
{
"affected": [],
"aliases": [
"CVE-2012-2825"
],
"database_specific": {
"cwe_ids": [
"CWE-20"
],
"github_reviewed": false,
"github_reviewed_at": null,
"nvd_published_at": "2012-06-27T10:18:00Z",
"severity": "MODERATE"
},
"details": "The XSL implementation in Google Chrome before 20.0.1132.43 allows remote attackers to cause a denial of service (incorrect read operation) via unspecified vectors.",
"id": "GHSA-fj65-38p4-j4mp",
"modified": "2022-05-17T04:54:08Z",
"published": "2022-05-17T04:54:08Z",
"references": [
{
"type": "ADVISORY",
"url": "https://nvd.nist.gov/vuln/detail/CVE-2012-2825"
},
{
"type": "WEB",
"url": "https://hermes.opensuse.org/messages/15075728"
},
{
"type": "WEB",
"url": "https://www.suse.com/support/update/announcement/2013/suse-su-20131654-1.html"
},
{
"type": "WEB",
"url": "https://www.suse.com/support/update/announcement/2013/suse-su-20131656-1.html"
},
{
"type": "WEB",
"url": "http://code.google.com/p/chromium/issues/detail?id=127417"
},
{
"type": "WEB",
"url": "http://googlechromereleases.blogspot.com/2012/06/stable-channel-update_26.html"
},
{
"type": "WEB",
"url": "http://lists.apple.com/archives/security-announce/2013/Oct/msg00009.html"
},
{
"type": "WEB",
"url": "http://lists.apple.com/archives/security-announce/2013/Sep/msg00006.html"
},
{
"type": "WEB",
"url": "http://secunia.com/advisories/54886"
},
{
"type": "WEB",
"url": "http://support.apple.com/kb/HT5934"
},
{
"type": "WEB",
"url": "http://support.apple.com/kb/HT6001"
}
],
"schema_version": "1.4.0",
"severity": []
}
Sightings
| Author | Source | Type | Date |
|---|
Nomenclature
- Seen: The vulnerability was mentioned, discussed, or observed by the user.
- Confirmed: The vulnerability has been validated from an analyst's perspective.
- Published Proof of Concept: A public proof of concept is available for this vulnerability.
- Exploited: The vulnerability was observed as exploited by the user who reported the sighting.
- Patched: The vulnerability was observed as successfully patched by the user who reported the sighting.
- Not exploited: The vulnerability was not observed as exploited by the user who reported the sighting.
- Not confirmed: The user expressed doubt about the validity of the vulnerability.
- Not patched: The vulnerability was not observed as successfully patched by the user who reported the sighting.