- EPSS 29.36%
- Veröffentlicht 22.02.2011 19:00:02
- Zuletzt bearbeitet 16.06.2026 23:28:31
avahi-core/socket.c in avahi-daemon in Avahi before 0.6.29 allows remote attackers to cause a denial of service (infinite loop) via an empty mDNS (1) IPv4 or (2) IPv6 UDP packet to port 5353. NOTE: this vulnerability exists because of an incorrect f...
CVE-2010-4161
- EPSS 0.51%
- Veröffentlicht 30.12.2010 19:00:03
- Zuletzt bearbeitet 16.06.2026 23:24:14
The udp_queue_rcv_skb function in net/ipv4/udp.c in a certain Red Hat build of the Linux kernel 2.6.18 in Red Hat Enterprise Linux (RHEL) 5 allows attackers to cause a denial of service (deadlock and system hang) by sending UDP traffic to a socket th...
CVE-2010-3904
- EPSS 12.16%
- Veröffentlicht 06.12.2010 20:13:00
- Zuletzt bearbeitet 16.06.2026 23:23:47
The rds_page_copy_user function in net/rds/page.c in the Reliable Datagram Sockets (RDS) protocol implementation in the Linux kernel before 2.6.36 does not properly validate addresses obtained from user space, which allows local users to gain privile...
CVE-2010-2941
- EPSS 6.42%
- Veröffentlicht 05.11.2010 17:00:01
- Zuletzt bearbeitet 16.06.2026 23:21:47
ipp.c in cupsd in CUPS 1.4.4 and earlier does not properly allocate memory for attribute values with invalid string data types, which allows remote attackers to cause a denial of service (use-after-free and application crash) or possibly execute arbi...
CVE-2010-1772
- EPSS 1.97%
- Veröffentlicht 24.09.2010 19:00:04
- Zuletzt bearbeitet 16.06.2026 23:19:17
Use-after-free vulnerability in page/Geolocation.cpp in WebCore in WebKit before r59859, as used in Google Chrome before 5.0.375.70, allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted web ...
CVE-2010-1773
- EPSS 2.15%
- Veröffentlicht 24.09.2010 19:00:04
- Zuletzt bearbeitet 16.06.2026 23:19:17
Off-by-one error in the toAlphabetic function in rendering/RenderListMarker.cpp in WebCore in WebKit before r59950, as used in Google Chrome before 5.0.375.70, allows remote attackers to obtain sensitive information, cause a denial of service (memory...
CVE-2010-2598
- EPSS 1.99%
- Veröffentlicht 02.07.2010 12:43:53
- Zuletzt bearbeitet 16.06.2026 23:21:03
LibTIFF in Red Hat Enterprise Linux (RHEL) 3 on x86_64 platforms, as used in tiff2rgba, attempts to process image data even when the required compression functionality is not configured, which allows remote attackers to cause a denial of service via ...
CVE-2010-0730
- EPSS 2.44%
- Veröffentlicht 12.05.2010 11:46:31
- Zuletzt bearbeitet 16.06.2026 23:16:44
The MMIO instruction decoder in the Xen hypervisor in the Linux kernel 2.6.18 in Red Hat Enterprise Linux (RHEL) 5 allows guest OS users to cause a denial of service (32-bit guest OS crash) via vectors that trigger an unspecified instruction emulatio...
CVE-2010-0727
- EPSS 0.58%
- Veröffentlicht 16.03.2010 19:30:00
- Zuletzt bearbeitet 16.06.2026 23:16:43
The gfs2_lock function in the Linux kernel before 2.6.34-rc1-next-20100312, and the gfs_lock function in the Linux kernel on Red Hat Enterprise Linux (RHEL) 5 and 6, does not properly remove POSIX locks on files that are setgid without group-execute ...
CVE-2010-0729
- EPSS 0.34%
- Veröffentlicht 16.03.2010 19:30:00
- Zuletzt bearbeitet 16.06.2026 23:16:44
A certain Red Hat patch for the Linux kernel in Red Hat Enterprise Linux (RHEL) 4 on the ia64 platform allows local users to use ptrace on an arbitrary process, and consequently gain privileges, via vectors related to a missing ptrace_check_attach ca...