VYPR

Studio

by SUSE S.A.

CVEs (3)

  • CVE-2011-4315Dec 8, 2011
    risk 0.00cvss —epss 0.06

    Heap-based buffer overflow in compression-pointer processing in core/ngx_resolver.c in nginx before 1.0.10 allows remote resolvers to cause a denial of service (daemon crash) or possibly have unspecified other impact via a long response.

  • CVE-2011-2648Aug 23, 2011
    risk 0.00cvss —epss 0.03

    Unspecified vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to execute arbitrary code via a filter in a modified file.

  • CVE-2011-2226Aug 23, 2011
    risk 0.00cvss —epss 0.01

    Cross-site scripting (XSS) vulnerability in Kiwi before 3.74.2, as used in SUSE Studio 1.1 before 1.1.4, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to a pattern listing.