CVE Tools

Mageia-project

13 CVEs tracked since 2014. Since May 2014, none of them reached CISA KEV.

Mageia-project CVEs per month

May 2014 to Mar 2015. Point at a month, or focus the strip and use the arrow keys.
Mageia-project CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2014-0540
2014-06null or fewer
2014-0720
2014-08null or fewer
2014-09null or fewer
2014-1020
2014-1130
2014-1210
2015-01null or fewer
2015-02null or fewer
2015-0310

Products

The products that kept showing up in Mageia-project's monthly top three, with their CVEs summed over those months.

  1. Mageia136 months

Latest CVEs

The 13 most recently published vulnerabilities affecting Mageia-project.

  1. CVE-2015-2296The resolve_redirects function in sessions.py in requests 2.1.0 through 2.5.3 allows remote attackers to conduct session fixation attacks via a cookie without a host value in a redirect.6.8
  2. CVE-2014-9274UnRTF allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code as demonstrated by a file containing the string "{\cb-999999999".7.5
  3. CVE-2014-9039wp-login.php in WordPress before 3.7.5, 3.8.x before 3.8.5, 3.9.x before 3.9.3, and 4.x before 4.0.1 might allow remote attackers to reset passwords by leveraging access to an e-mail account that r...4.3
  4. CVE-2014-9037WordPress before 3.7.5, 3.8.x before 3.8.5, 3.9.x before 3.9.3, and 4.x before 4.0.1 might allow remote attackers to obtain access to an account idle since 2008 by leveraging an improper PHP dynami...6.8
  5. CVE-2014-7824D-Bus 1.3.0 through 1.6.x before 1.6.26, 1.8.x before 1.8.10, and 1.9.x before 1.9.2 allows local users to cause a denial of service (prevention of new connections and connection drop) by queuing t...2.1
  6. CVE-2014-8763DokuWiki before 2014-05-05b, when using Active Directory for LDAP authentication, allows remote attackers to bypass authentication via a password starting with a null (\0) character and a valid use...5.0
  7. CVE-2014-8764DokuWiki 2014-05-05a and earlier, when using Active Directory for LDAP authentication, allows remote attackers to bypass authentication via a user name and password starting with a null (\0) charac...5.0
  8. CVE-2014-3533dbus 1.3.0 before 1.6.22 and 1.8.x before 1.8.6 allows local users to cause a denial of service (disconnect) via a certain sequence of crafted messages that cause the dbus-daemon to forward a messa...2.1
  9. CVE-2014-4668The cherokee_validator_ldap_check function in validator_ldap.c in Cherokee 1.2.103 and earlier, when LDAP is used, does not properly consider unauthenticated-bind semantics, which allows remote att...6.8
  10. CVE-2014-3422lisp/emacs-lisp/find-gc.el in GNU Emacs 24.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on a temporary file under /tmp/esrc/.3.3
  11. CVE-2014-3423lisp/net/browse-url.el in GNU Emacs 24.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on a /tmp/Mosaic.##### temporary file.3.3
  12. CVE-2014-3424lisp/net/tramp-sh.el in GNU Emacs 24.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on a /tmp/tramp.##### temporary file.3.3
  13. CVE-2014-3421lisp/gnus/gnus-fun.el in GNU Emacs 24.3 and earlier allows local users to overwrite arbitrary files via a symlink attack on the /tmp/gnus.face.ppm temporary file.3.3

The record

Peak rank
#37 in May 2014
Busiest month shown
May 2014, 4 CVEs
Months with a KEV entry
0 since May 2014
Monthly snapshots
6 since 2014
Mageia-project's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store