CVE-2011-0461
- EPSS 0.02%
- Published 04.04.2011 12:27:36
- Last modified 11.04.2025 00:51:21
/etc/init.d/boot.localfs in the aaa_base package before 11.2-43.48.1 in SUSE openSUSE 11.2, and before 11.3-8.7.1 in openSUSE 11.3, allows local users to overwrite arbitrary files via a symlink attack on /dev/shm/mtab.
CVE-2011-0468
- EPSS 0.05%
- Published 04.04.2011 12:27:36
- Last modified 11.04.2025 00:51:21
The aaa_base package before 11.3-8.9.1 in SUSE openSUSE 11.3, and before 11.4-54.62.1 in openSUSE 11.4, allows local users to gain privileges via shell metacharacters in a filename, related to tab expansion.
CVE-2011-0609
- EPSS 92.4%
- Published 15.03.2011 17:55:03
- Last modified 11.04.2025 00:51:21
Unspecified vulnerability in Adobe Flash Player 10.2.154.13 and earlier on Windows, Mac OS X, Linux, and Solaris; 10.1.106.16 and earlier on Android; Adobe AIR 2.5.1 and earlier; and Authplay.dll (aka AuthPlayLib.bundle) in Adobe Reader and Acrobat 9...
- EPSS 36.87%
- Published 02.03.2011 20:00:01
- Last modified 11.04.2025 00:51:21
The vsf_filename_passes_filter function in ls.c in vsftpd before 2.3.3 allows remote authenticated users to cause a denial of service (CPU consumption and process slot exhaustion) via crafted glob expressions in STAT commands in multiple FTP sessions...
CVE-2010-3865
- EPSS 0.07%
- Published 11.01.2011 03:00:02
- Last modified 11.04.2025 00:51:21
Integer overflow in the rds_rdma_pages function in net/rds/rdma.c in the Linux kernel allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a crafted iovec struct in a Reliable Datagram Sockets (RDS) request,...
CVE-2010-4160
- EPSS 0.16%
- Published 07.01.2011 12:00:48
- Last modified 11.04.2025 00:51:21
Multiple integer overflows in the (1) pppol2tp_sendmsg function in net/l2tp/l2tp_ppp.c, and the (2) l2tp_ip_sendmsg function in net/l2tp/l2tp_ip.c, in the PPPoL2TP and IPoL2TP implementations in the Linux kernel before 2.6.36.2 allow local users to c...
CVE-2010-3876
- EPSS 0.06%
- Published 03.01.2011 20:00:42
- Last modified 11.04.2025 00:51:21
net/packet/af_packet.c in the Linux kernel before 2.6.37-rc2 does not properly initialize certain structure members, which allows local users to obtain potentially sensitive information from kernel stack memory by leveraging the CAP_NET_RAW capabilit...
CVE-2010-4162
- EPSS 0.08%
- Published 03.01.2011 20:00:42
- Last modified 11.04.2025 00:51:21
Multiple integer overflows in fs/bio.c in the Linux kernel before 2.6.36.2 allow local users to cause a denial of service (system crash) via a crafted device ioctl to a SCSI device.
CVE-2010-4163
- EPSS 0.08%
- Published 03.01.2011 20:00:42
- Last modified 11.04.2025 00:51:21
The blk_rq_map_user_iov function in block/blk-map.c in the Linux kernel before 2.6.36.2 allows local users to cause a denial of service (panic) via a zero-length I/O request in a device ioctl to a SCSI device.
CVE-2010-4164
- EPSS 2%
- Published 03.01.2011 20:00:42
- Last modified 11.04.2025 00:51:21
Multiple integer underflows in the x25_parse_facilities function in net/x25/x25_facilities.c in the Linux kernel before 2.6.36.2 allow remote attackers to cause a denial of service (system crash) via malformed X.25 (1) X25_FAC_CLASS_A, (2) X25_FAC_CL...