CVE-2010-2753
- EPSS 6.67%
- Veröffentlicht 30.07.2010 20:30:02
- Zuletzt bearbeitet 16.06.2026 23:21:26
Integer overflow in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0.6 and 3.1.x before 3.1.1, and SeaMonkey before 2.0.6 allows remote attackers to execute arbitrary code via a large selection attribute in a X...
CVE-2010-0211
- EPSS 27.72%
- Veröffentlicht 28.07.2010 12:48:51
- Zuletzt bearbeitet 16.06.2026 23:15:43
The slap_modrdn2mods function in modrdn.c in OpenLDAP 2.4.22 does not check the return value of a call to the smr_normalize function, which allows remote attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code ...
CVE-2010-2648
- EPSS 2.05%
- Veröffentlicht 06.07.2010 17:17:14
- Zuletzt bearbeitet 16.06.2026 23:21:09
The implementation of the Unicode Bidirectional Algorithm (aka Bidi algorithm or UBA) in Google Chrome before 5.0.375.99 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown ve...
CVE-2010-1205
- EPSS 43.38%
- Veröffentlicht 30.06.2010 18:30:01
- Zuletzt bearbeitet 16.06.2026 23:17:50
Buffer overflow in pngpread.c in libpng before 1.2.44 and 1.4.x before 1.4.3, as used in progressive applications, might allow remote attackers to execute arbitrary code via a PNG image that triggers an additional data row.
CVE-2010-2249
- EPSS 2.63%
- Veröffentlicht 30.06.2010 18:30:01
- Zuletzt bearbeitet 16.06.2026 23:20:23
Memory leak in pngrutil.c in libpng before 1.2.44, and 1.4.x before 1.4.3, allows remote attackers to cause a denial of service (memory consumption and application crash) via a PNG image containing malformed Physical Scale (aka sCAL) chunks.
CVE-2010-2297
- EPSS 2.81%
- Veröffentlicht 15.06.2010 18:00:02
- Zuletzt bearbeitet 16.06.2026 23:20:29
rendering/FixedTableLayout.cpp in WebCore in WebKit in Google Chrome before 5.0.375.70 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via an HTML document that has a large colspan attribute...
CVE-2010-2301
- EPSS 1.29%
- Veröffentlicht 15.06.2010 18:00:02
- Zuletzt bearbeitet 16.06.2026 23:20:30
Cross-site scripting (XSS) vulnerability in editing/markup.cpp in WebCore in WebKit in Google Chrome before 5.0.375.70 allows remote attackers to inject arbitrary web script or HTML via vectors related to the node.innerHTML property of a TEXTAREA ele...
- EPSS 2.98%
- Veröffentlicht 15.06.2010 18:00:02
- Zuletzt bearbeitet 16.06.2026 23:20:30
Use-after-free vulnerability in WebCore in WebKit in Google Chrome before 5.0.375.70 allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via vectors involving remote fonts in conjunction with sh...
CVE-2010-1770
- EPSS 4.76%
- Veröffentlicht 11.06.2010 19:30:20
- Zuletzt bearbeitet 16.06.2026 23:19:17
WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, Apple Safari before 4.1 on Mac OS X 10.4, and Google Chrome before 5.0.375.70 does not properly handle a transformation of a text node that has the IBM1147 character set, wh...
CVE-2010-0395
- EPSS 10.47%
- Veröffentlicht 10.06.2010 00:30:07
- Zuletzt bearbeitet 16.06.2026 23:16:04
OpenOffice.org 2.x and 3.0 before 3.2.1 allows user-assisted remote attackers to bypass Python macro security restrictions and execute arbitrary Python code via a crafted OpenDocument Text (ODT) file that triggers code execution when the macro direct...