SEARCHSearch the cs-graph

CVE-#### · MITRE T#### · CWE-#### · ATLAS AML.T#### · D3-XX · compliance article references. Authored by Adam Lundqvist.

24 results for “kev-cve-2014-6287” · 0.69 s · cached

Facets · 1 entity types

24 CVE
CVE-2014-7169CVE

GNU Bourne-Again Shell (Bash) Arbitrary Code Execution Vulnerability

GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute code. This CVE correctly remediates the vul…

EPSS 99.9%KEVGNU
Match for kev-cve-2014-6287
CVE-2026-5274CVE

CVE-2026-5274

Integer overflow in Codecs in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to perform arbitrary read/write via a crafted HTML page. (Chromium security severity: High)

CVSS 8.8EPSS 0.3%
Match for kev-cve-2014-6287
CVE-2014-6271CVE

GNU Bourne-Again Shell (Bash) Arbitrary Code Execution Vulnerability

GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute code.

EPSS 100.0%KEVGNU
Match for kev-cve-2014-6287
CVE-2026-6209CVE

CVE-2026-6209

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Match for kev-cve-2014-6287
CVE-2014-6324CVE

Microsoft Kerberos Key Distribution Center (KDC) Privilege Escalation Vulnerability

The Kerberos Key Distribution Center (KDC) in Microsoft allows remote authenticated domain users to obtain domain administrator privileges.

EPSS 87.3%KEVMicrosoft
Match for kev-cve-2014-6287
CVE-2026-1484CVE

CVE-2026-1484

A flaw was found in the GLib Base64 encoding routine when processing very large input data. Due to incorrect use of integer types during length calculation, the library may miscalculate buffer bounda…

CVSS 4.2EPSS 0.3%
Match for kev-cve-2014-6287
CVE-2014-6278CVE

GNU Bash OS Command Injection Vulnerability

GNU Bash contains an OS command injection vulnerability which allows remote attackers to execute arbitrary commands via a crafted environment.

EPSS 99.6%KEVGNU
Match for kev-cve-2014-6287
CVE-2026-6207CVE

CVE-2026-6207

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Match for kev-cve-2014-6287
CVE-2026-6318CVE

CVE-2026-6318

Use after free in Codecs in Google Chrome prior to 147.0.7727.101 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Medium)

CVSS 8.8EPSS 0.4%
Match for kev-cve-2014-6287
CVE-2026-40685CVE

CVE-2026-40685

In Exim before 4.99.2, when JSON lookup is enabled, an out-of-bounds heap write can occur when a JSON operator encounters malformed JSON in an untrusted header, because of an incorrect implementation…

CVSS 9.8EPSS 0.6%
Match for kev-cve-2014-6287
CVE-2026-8573CVE

CVE-2026-8573

Integer overflow in Codecs in Google Chrome on Windows prior to 148.0.7778.168 allowed a remote attacker to potentially perform a sandbox escape via a crafted video file. (Chromium security severity:…

CVSS 8.3EPSS 0.3%
Match for kev-cve-2014-6287
CVE-2013-6282CVE

Linux Kernel Improper Input Validation Vulnerability

The get_user and put_user API functions of the Linux kernel fail to validate the target address when being used on ARM v6k/v7 platforms. This allows an application to read and write kernel memory whi…

EPSS 39.7%KEVLinux
Match for kev-cve-2014-6287
CVE-2026-5282CVE

CVE-2026-5282

Out of bounds read in WebCodecs in Google Chrome prior to 146.0.7680.178 allowed a remote attacker to perform an out of bounds memory read via a crafted HTML page. (Chromium security severity: High)

CVSS 8.1EPSS 0.3%
Match for kev-cve-2014-6287
CVE-2026-6296CVE

CVE-2026-6296

Heap buffer overflow in ANGLE in Google Chrome prior to 147.0.7727.101 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page. (Chromium security severity: Critical)

CVSS 9.6EPSS 0.6%
Match for kev-cve-2014-6287
CVE-2014-4148CVE

Microsoft Windows Remote Code Execution Vulnerability

A remote code execution vulnerability exists when the Windows kernel-mode driver improperly handles TrueType fonts.

EPSS 59.9%KEVMicrosoft
Match for kev-cve-2014-6287
CVE-2026-42770CVE

CVE-2026-42770

Issue summary: When EVP_PKEY_derive_set_peer() is called with a DHX (X9.42) peer key, the peer key is not properly checked for the subgroup membership. Impact summary: A malicious peer which present…

CVSS 3.7EPSS 0.3%openssl
Match for kev-cve-2014-6287
CVE-2026-40687CVE

CVE-2026-40687

In Exim before 4.99.2, when the SPA authentication driver is used with an adversarial SPA resource, there can be an out-of-bounds write that crashes the connection instance, or erroneous data process…

CVSS 9.1EPSS 0.7%
Match for kev-cve-2014-6287
CVE-2024-56122CVE

CVE-2024-56122

Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

Match for kev-cve-2014-6287
CVE-2026-47288CVE

CVE-2026-47288

Integer overflow or wraparound in Windows Kerberos allows an authorized attacker to execute code over an adjacent network.

CVSS 7.1EPSS 0.4%microsoft
Match for kev-cve-2014-6287
CVE-2026-5434CVE

CVE-2026-5434

Honeywell Control Network Module (CNM) contains insertion of sensitive information into an unintended directory. An attacker could exploit this vulnerability through probing system files, potentially…

CVSS 5.9EPSS 0.3%
Match for kev-cve-2014-6287
Hybrid search: an exact-match keyword pass (title + MITRE-ID + body-head) fused with Vertex AI semantic similarity (text-embedding-005, cosine vector search over the corpus) via reciprocal-rank fusion — exact IDs stay pinned, related concepts surface by meaning. Curated by Adam Lundqvist, Founder at SQUR.