CVE-2012-4290
- EPSS 1.18%
- Veröffentlicht 16.08.2012 10:38:08
- Zuletzt bearbeitet 11.04.2025 00:51:21
The CTDB dissector in Wireshark 1.4.x before 1.4.15, 1.6.x before 1.6.10, and 1.8.x before 1.8.2 allows remote attackers to cause a denial of service (loop and CPU consumption) via a malformed packet.
CVE-2012-4291
- EPSS 1.18%
- Veröffentlicht 16.08.2012 10:38:08
- Zuletzt bearbeitet 11.04.2025 00:51:21
The CIP dissector in Wireshark 1.4.x before 1.4.15, 1.6.x before 1.6.10, and 1.8.x before 1.8.2 allows remote attackers to cause a denial of service (memory consumption) via a malformed packet.
CVE-2012-3440
- EPSS 0.12%
- Veröffentlicht 08.08.2012 10:26:19
- Zuletzt bearbeitet 11.04.2025 00:51:21
A certain Red Hat script for sudo 1.7.2 on Red Hat Enterprise Linux (RHEL) 5 allows local users to overwrite arbitrary files via a symlink attack on the /var/tmp/nsswitch.conf.bak temporary file.
CVE-2012-2665
- EPSS 5.02%
- Veröffentlicht 06.08.2012 18:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple heap-based buffer overflows in the XML manifest encryption tag parsing functionality in OpenOffice.org and LibreOffice before 3.5.5 allow remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted Open Do...
CVE-2012-0867
- EPSS 1.87%
- Veröffentlicht 18.07.2012 23:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
PostgreSQL 8.4.x before 8.4.11, 9.0.x before 9.0.7, and 9.1.x before 9.1.3 truncates the common name to only 32 characters when verifying SSL certificates, which allows remote attackers to spoof connections when the host name is exactly 32 characters...
CVE-2012-1149
- EPSS 3.76%
- Veröffentlicht 21.06.2012 15:55:11
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in the vclmi.dll module in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a cra...
CVE-2012-2313
- EPSS 0.22%
- Veröffentlicht 13.06.2012 10:24:55
- Zuletzt bearbeitet 11.04.2025 00:51:21
The rio_ioctl function in drivers/net/ethernet/dlink/dl2k.c in the Linux kernel before 3.3.7 does not restrict access to the SIOCSMIIREG command, which allows local users to write data to an Ethernet adapter via an ioctl call.
CVE-2011-3188
- EPSS 1.72%
- Veröffentlicht 24.05.2012 23:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The (1) IPv4 and (2) IPv6 implementations in the Linux kernel before 3.1 use a modified MD4 algorithm to generate sequence numbers and Fragment Identification values, which makes it easier for remote attackers to cause a denial of service (disrupted ...
CVE-2011-3191
- EPSS 0.39%
- Veröffentlicht 24.05.2012 23:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer signedness error in the CIFSFindNext function in fs/cifs/cifssmb.c in the Linux kernel before 3.1 allows remote CIFS servers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a large length value i...
CVE-2011-3363
- EPSS 0.23%
- Veröffentlicht 24.05.2012 23:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The setup_cifs_sb function in fs/cifs/connect.c in the Linux kernel before 2.6.39 does not properly handle DFS referrals, which allows remote CIFS servers to cause a denial of service (system crash) by placing a referral at the root of a share.