CVE-2012-0867
- EPSS 2.05%
- Veröffentlicht 18.07.2012 23:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
PostgreSQL 8.4.x before 8.4.11, 9.0.x before 9.0.7, and 9.1.x before 9.1.3 truncates the common name to only 32 characters when verifying SSL certificates, which allows remote attackers to spoof connections when the host name is exactly 32 characters...
CVE-2012-1149
- EPSS 1.19%
- Veröffentlicht 21.06.2012 15:55:11
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in the vclmi.dll module in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a cra...
CVE-2012-2313
- EPSS 0.2%
- Veröffentlicht 13.06.2012 10:24:55
- Zuletzt bearbeitet 11.04.2025 00:51:21
The rio_ioctl function in drivers/net/ethernet/dlink/dl2k.c in the Linux kernel before 3.3.7 does not restrict access to the SIOCSMIIREG command, which allows local users to write data to an Ethernet adapter via an ioctl call.
CVE-2011-3188
- EPSS 6.16%
- Veröffentlicht 24.05.2012 23:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The (1) IPv4 and (2) IPv6 implementations in the Linux kernel before 3.1 use a modified MD4 algorithm to generate sequence numbers and Fragment Identification values, which makes it easier for remote attackers to cause a denial of service (disrupted ...
CVE-2011-3191
- EPSS 0.33%
- Veröffentlicht 24.05.2012 23:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer signedness error in the CIFSFindNext function in fs/cifs/cifssmb.c in the Linux kernel before 3.1 allows remote CIFS servers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a large length value i...
CVE-2011-3363
- EPSS 0.12%
- Veröffentlicht 24.05.2012 23:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The setup_cifs_sb function in fs/cifs/connect.c in the Linux kernel before 2.6.39 does not properly handle DFS referrals, which allows remote CIFS servers to cause a denial of service (system crash) by placing a referral at the root of a share.
CVE-2011-2517
- EPSS 0.12%
- Veröffentlicht 24.05.2012 23:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple buffer overflows in net/wireless/nl80211.c in the Linux kernel before 2.6.39.2 allow local users to gain privileges by leveraging the CAP_NET_ADMIN capability during scan operations with a long SSID value.
CVE-2011-2699
- EPSS 1.36%
- Veröffentlicht 24.05.2012 23:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The IPv6 implementation in the Linux kernel before 3.1 does not generate Fragment Identification values separately for each destination, which makes it easier for remote attackers to cause a denial of service (disrupted networking) by predicting thes...
CVE-2012-1097
- EPSS 0.11%
- Veröffentlicht 17.05.2012 11:00:37
- Zuletzt bearbeitet 11.04.2025 00:51:21
The regset (aka register set) feature in the Linux kernel before 3.2.10 does not properly handle the absence of .get and .set methods, which allows local users to cause a denial of service (NULL pointer dereference) or possibly have unspecified other...
CVE-2011-4097
- EPSS 0.08%
- Veröffentlicht 17.05.2012 11:00:32
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in the oom_badness function in mm/oom_kill.c in the Linux kernel before 3.1.8 on 64-bit platforms allows local users to cause a denial of service (memory consumption or process termination) by using a certain large amount of memory.