CVE-2010-0211
- EPSS 42.37%
- Veröffentlicht 28.07.2010 12:48:51
- Zuletzt bearbeitet 11.04.2025 00:51:21
The slap_modrdn2mods function in modrdn.c in OpenLDAP 2.4.22 does not check the return value of a call to the smr_normalize function, which allows remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code ...
CVE-2010-2648
- EPSS 2.14%
- Veröffentlicht 06.07.2010 17:17:14
- Zuletzt bearbeitet 11.04.2025 00:51:21
The implementation of the Unicode Bidirectional Algorithm (aka Bidi algorithm or UBA) in Google Chrome before 5.0.375.99 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown ve...
CVE-2010-1205
- EPSS 17.03%
- Veröffentlicht 30.06.2010 18:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG image that triggers an additional data row.
CVE-2010-2249
- EPSS 1.57%
- Veröffentlicht 30.06.2010 18:30:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Memory leak in pngrutil.c in libpng before 1.2.44, and 1.4.x before 1.4.3, allows remote attackers to cause a denial of service (memory consumption and application crash) via a PNG image containing malformed Physical Scale (aka sCAL) chunks.
CVE-2010-2297
- EPSS 8.24%
- Veröffentlicht 15.06.2010 18:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
rendering/FixedTableLayout.cpp in WebCore in WebKit in Google Chrome before 5.0.375.70 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an HTML document that has a large colspan attribute...
CVE-2010-2301
- EPSS 0.5%
- Veröffentlicht 15.06.2010 18:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Cross-site scripting (XSS) vulnerability in editing/markup.cpp in WebCore in WebKit in Google Chrome before 5.0.375.70 allows remote attackers to inject arbitrary web script or HTML via vectors related to the node.innerHTML property of a TEXTAREA ele...
- EPSS 5.38%
- Veröffentlicht 15.06.2010 18:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in WebCore in WebKit in Google Chrome before 5.0.375.70 allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via vectors involving remote fonts in conjunction with sh...
CVE-2010-1770
- EPSS 9.73%
- Veröffentlicht 11.06.2010 19:30:20
- Zuletzt bearbeitet 11.04.2025 00:51:21
WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, Apple Safari before 4.1 on Mac OS X 10.4, and Google Chrome before 5.0.375.70 does not properly handle a transformation of a text node that has the IBM1147 character set, wh...
CVE-2010-0395
- EPSS 15.7%
- Veröffentlicht 10.06.2010 00:30:07
- Zuletzt bearbeitet 11.04.2025 00:51:21
OpenOffice.org 2.x and 3.0 before 3.2.1 allows user-assisted remote attackers to bypass Python macro security restrictions and execute arbitrary Python code via a crafted OpenDocument Text (ODT) file that triggers code execution when the macro direct...
CVE-2010-1297
- EPSS 93.62%
- Veröffentlicht 08.06.2010 18:30:10
- Zuletzt bearbeitet 11.04.2025 00:51:21
Adobe Flash Player before 9.0.277.0 and 10.x before 10.1.53.64; Adobe AIR before 2.0.2.12610; and Adobe Reader and Acrobat 9.x before 9.3.3, and 8.x before 8.2.3 on Windows and Mac OS X, allow remote attackers to execute arbitrary code or cause a den...