Vulnerabilities > Opensuse Project > Suse Linux Enterprise Desktop > High

DATE CVE VULNERABILITY TITLE RISK
2017-08-09 CVE-2015-3405 Insufficient Entropy vulnerability in multiple products
ntp-keygen in ntp 4.2.8px before 4.2.8p2-RC2 and 4.3.x before 4.3.12 does not generate MD5 keys with sufficient entropy on big endian machines when the lowest order byte of the temp variable is between 0x20 and 0x7f and not #, which might allow remote attackers to obtain the value of generated MD5 keys via a brute force attack with the 93 possible keys.
7.5
2017-03-20 CVE-2014-9851 Improper Input Validation vulnerability in multiple products
ImageMagick 6.8.9.9 allows remote attackers to cause a denial of service (application crash).
7.5
2017-03-20 CVE-2014-9850 Resource Management Errors vulnerability in multiple products
Logic error in ImageMagick 6.8.9.9 allows remote attackers to cause a denial of service (resource consumption).
7.5
2017-03-20 CVE-2014-9849 Resource Exhaustion vulnerability in multiple products
The png coder in ImageMagick allows remote attackers to cause a denial of service (crash).
7.5
2017-03-20 CVE-2014-9848 Resource Management Errors vulnerability in multiple products
Memory leak in ImageMagick allows remote attackers to cause a denial of service (memory consumption).
7.5
2017-03-20 CVE-2014-9842 Resource Exhaustion vulnerability in multiple products
Memory leak in the ReadPSDLayers function in coders/psd.c in ImageMagick 6.8.9.9 allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors.
7.5