Vendor
Xarrow
Products
1
CVEs
4
Across products
4
Status
Private
Products
1- 4 CVEs
Recent CVEs
4| CVE | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2012-2429 | 0.00 | — | 0.04 | May 25, 2012 | The server in xArrow before 3.4.1 performs an invalid read operation, which allows remote attackers to execute arbitrary code via unspecified vectors. | ||
| CVE-2012-2428 | 0.00 | — | 0.02 | May 25, 2012 | Integer overflow in the server in xArrow before 3.4.1 allows remote attackers to execute arbitrary code via a crafted packet that triggers an out-of-bounds read operation. | ||
| CVE-2012-2427 | 0.00 | — | 0.05 | May 25, 2012 | Heap-based buffer overflow in the server in xArrow before 3.4.1 allows remote attackers to execute arbitrary code via packets that trigger an invalid free operation. | ||
| CVE-2012-2426 | 0.00 | — | 0.00 | May 25, 2012 | The server in xArrow before 3.4.1 does not properly allocate memory, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via unspecified vectors. |
- CVE-2012-2429May 25, 2012risk 0.00cvss —epss 0.04
The server in xArrow before 3.4.1 performs an invalid read operation, which allows remote attackers to execute arbitrary code via unspecified vectors.
- CVE-2012-2428May 25, 2012risk 0.00cvss —epss 0.02
Integer overflow in the server in xArrow before 3.4.1 allows remote attackers to execute arbitrary code via a crafted packet that triggers an out-of-bounds read operation.
- CVE-2012-2427May 25, 2012risk 0.00cvss —epss 0.05
Heap-based buffer overflow in the server in xArrow before 3.4.1 allows remote attackers to execute arbitrary code via packets that trigger an invalid free operation.
- CVE-2012-2426May 25, 2012risk 0.00cvss —epss 0.00
The server in xArrow before 3.4.1 does not properly allocate memory, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via unspecified vectors.