VYPR
Vendor

Xarrow

Products
1
CVEs
4
Across products
4
Status
Private

Products

1

Recent CVEs

4
  • CVE-2012-2429May 25, 2012
    risk 0.00cvss epss 0.04

    The server in xArrow before 3.4.1 performs an invalid read operation, which allows remote attackers to execute arbitrary code via unspecified vectors.

  • CVE-2012-2428May 25, 2012
    risk 0.00cvss epss 0.02

    Integer overflow in the server in xArrow before 3.4.1 allows remote attackers to execute arbitrary code via a crafted packet that triggers an out-of-bounds read operation.

  • CVE-2012-2427May 25, 2012
    risk 0.00cvss epss 0.05

    Heap-based buffer overflow in the server in xArrow before 3.4.1 allows remote attackers to execute arbitrary code via packets that trigger an invalid free operation.

  • CVE-2012-2426May 25, 2012
    risk 0.00cvss epss 0.00

    The server in xArrow before 3.4.1 does not properly allocate memory, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via unspecified vectors.