Kanaka
Products
2- 4 CVEs
- 1 CVE
Recent CVEs
5| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-35420 | Med | 0.40 | 6.2 | 0.00 | Nov 8, 2024 | wac commit 385e1 was discovered to contain a heap overflow. | ||
| CVE-2024-35418 | Med | 0.40 | 6.2 | 0.00 | Nov 8, 2024 | wac commit 385e1 was discovered to contain a heap overflow via the setup_call function at /wac-asan/wa.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted wasm file. | ||
| CVE-2024-35410 | Med | 0.40 | 6.2 | 0.00 | Nov 8, 2024 | wac commit 385e1 was discovered to contain a heap overflow via the interpret function at /wac-asan/wa.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted wasm file. | ||
| CVE-2024-35419 | Med | 0.36 | 5.5 | 0.00 | Nov 8, 2024 | wac commit 385e1 was discovered to contain a heap overflow via the load_module function at /wac-asan/wa.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted wasm file. | ||
| CVE-2013-7436 | 0.00 | — | 0.02 | Apr 10, 2015 | noVNC before 0.5 does not set the secure flag for a cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session. |
- risk 0.40cvss 6.2epss 0.00
wac commit 385e1 was discovered to contain a heap overflow.
- risk 0.40cvss 6.2epss 0.00
wac commit 385e1 was discovered to contain a heap overflow via the setup_call function at /wac-asan/wa.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted wasm file.
- risk 0.40cvss 6.2epss 0.00
wac commit 385e1 was discovered to contain a heap overflow via the interpret function at /wac-asan/wa.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted wasm file.
- risk 0.36cvss 5.5epss 0.00
wac commit 385e1 was discovered to contain a heap overflow via the load_module function at /wac-asan/wa.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted wasm file.
- CVE-2013-7436Apr 10, 2015risk 0.00cvss —epss 0.02
noVNC before 0.5 does not set the secure flag for a cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session.